Xray-core concealed a certificate verification bypass vulnerability
AI summary · grok-4.7
Xray-core is alleged to have concealed a certificate verification bypass vulnerability.
A Hacker News post links to a GitHub issue alleging that the Xray-core proxy project concealed a certificate verification bypass vulnerability. The available text does not identify a CVE, affected versions, a fix, or confirmed exploitation. A flaw of this type can allow an attacker to impersonate a TLS endpoint if certificate checks are skipped.
- A GitHub issue claims Xray-core concealed a certificate verification bypass.
- The item names no CVE, affected version, or patch.
- No exploitation in the wild is stated.
- A certificate check bypass can enable TLS man-in-the-middle attacks.
ProductsXray-core
Full article
24 points · 0 comments on Hacker News
This source does not provide full text. Read it at github.com.