security.nuyts.tech
CVE-2020-15134 – NuytsTech Security
Faye before version 1.4.0, there is a lack of certification validation in TLS handshakes. Faye uses em-http-request and faye-websocket in the Ruby version of it