Poezio is a lightweight, open-source XMPP client that presents a narrow, specialized vulnerability footprint centered on its single messaging application. Its observed weaknesses cluster around input-validation and origin-validation issues, reflecting the protocol-parsing and authentication demands of a real-time communications tool. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Poezio over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-5591MEDIUM An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable applicat | Feb 9, 2017 | 5.9 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Poezio.
Media articles that mention a CVE ID that affects a product developed by Poezio — matched by CVE ID, not by vendor name.