CVE-2021-29495

Nim is a statically typed compiled systems programming language. In Nim standard library before 1.4.2, httpClient SSL/TLS certificate verification was disabled by default. Users can upgrade to version 1.4.2 to receive a patch or, as a workaround, set "verifyMode = CVerifyPeer" as documented.
Configurations

Configuration 1

cpe:2.3:a:nim-lang:nim:*:*:*:*:*:*:*:*

Information

Published : 2021-05-07 04:15

Updated : 2021-05-14 04:32


NVD link : CVE-2021-29495

Mitre link : CVE-2021-29495

Products Affected
No products.
CWE
CWE-295

Improper Certificate Validation