Slixmpp before 1.8.3 lacks SSL Certificate hostname validation in XMLStream, allowing an attacker to pose as any server in the eyes of Slixmpp.
"https://github.com/pypa/advisory-database/blob/main/vulns/slixmpp/PYSEC-2022-43013.yaml"