ended4월 20일· 1 sources
MailKit Patches Critical STARTTLS Vulnerability to Prevent Auth Downgrades
MailKit 보안 취약점 발견, 이메일 암호화 및 인증 우회 차단 위해 긴급 업데이트 권고
Why it matters
This vulnerability underscores the inherent risks of explicit TLS (STARTTLS) where initial handshake data can be manipulated via network injection. Developers using MailKit must upgrade immediately to prevent attackers from compromising session integrity and bypassing secure authentication protocols.
1
Sources
+0
24h
—
Growth
154d
Active
MailKitSTARTTLSSASL DowngradeMitM AttackCWE-74