TLS Certificate Validation Flaw in Atlassian HipChat for iOS
CVE-2017-8058
5.9MEDIUM
What is CVE-2017-8058?
An improper validation flaw in the TLS certificate handling of Atlassian HipChat for iOS permits the acceptance of invalid or self-signed TLS certificates. This vulnerability exposes users to potential man-in-the-middle attacks, allowing adversaries to intercept and access sensitive information transmitted during the login API calls. This flaw underscores the critical importance of strict certificate validation to safeguard data in transit.