In words.protocols.jabber.xmlstream in Twisted through 19.2.1, XMPP support did not verify certificates when used with TLS, allowing an attacker to MITM connections.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| Twisted(PyPI) | 0 | 19.7.0rc1 | N/A |
CVSS Metrics