CVE-2023-38688

CVE-2023-38688

twitch-tui provides Twitch chat in a terminal. Prior to version 2.4.1, the connection is not using TLS for communication. In the configuration of the irc connection, the software disables TLS, which makes all communication to Twitch IRC servers unencrypted. As a result, communication, including auth tokens, can be sniffed. Version 2.4.1 has a patch for this issue.

Source: CVE-2023-38688

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다