TROYANOSYVIRUS
Back to CVEs

CVE-2017-5887

N/A

Description

WebSocket.swift in Starscream before 2.0.4 allows an SSL Pinning bypass because pinning occurs in the stream function (this is too late; pinning should occur in the initStreamsWithData function).

CVE Details

CVSS v3.1 ScoreN/A
Published4/6/2017
Last Modified4/20/2025
Sourcenvd
Honeypot Sightings0

Affected Products

starscream_project:starscream

Weaknesses (CWE)

CWE-295

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.