An issue pertaining to CWE-295: Improper Certificate Validation was discovered in Ayms node-To master. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in TLS socket options
https://github.com/Ayms/node-To
https://gist.github.com/zcxlighthouse/33cc4342dfe650664548b4531d16b655