VYPR

libgrss

by GNOME Foundation

CVEs (1)

  • CVE-2016-20011HigMay 25, 2021
    risk 0.49cvss 7.5epss 0.01

    libgrss through 0.7.0 fails to perform TLS certificate verification when downloading feeds, allowing remote attackers to manipulate the contents of feeds without detection. This occurs because of the default behavior of SoupSessionSync.