High severity7.4NVD Advisory· Published Jul 5, 2019· Updated Jun 17, 2026
CVE-2019-5961
CVE-2019-5961
Description
The Android App 'Tootdon for Mastodon' version 3.4.1 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Tsukurito, Inc./Android App 'Tootdon for Mastodon'v5Range: version 3.4.1 and earlier
- cpe:2.3:a:mastodon-tootdon:tootdon_for_mastodon:*:*:*:*:*:android:*:*Range: <=3.4.1
- Range: <=3.4.1
Patches
Vulnerability mechanics
References
2- blog.mastodon-tootdon.com/entry/2019/05/20/204019nvdVendor Advisory
- jvn.jp/en/jp/JVN57806517/index.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.