Vulnerabilities > Matrix

DATE CVE VULNERABILITY TITLE RISK
2022-11-22 CVE-2022-41952 Missing Release of Resource after Effective Lifetime vulnerability in Matrix Synapse
Synapse before 1.52.0 with URL preview functionality enabled will attempt to generate URL previews for media stream URLs without properly limiting connection time.
network
low complexity
matrix CWE-772
5.3
2022-11-13 CVE-2022-3971 Improper Enforcement of Message or Data Structure vulnerability in Matrix IRC Bridge
A vulnerability was found in matrix-appservice-irc up to 0.35.1.
network
high complexity
matrix CWE-707
5.6
2022-09-29 CVE-2022-39252 Key Exchange without Entity Authentication vulnerability in Matrix Matrix-Rust-Sdk 0.4.0/0.4.1/0.5.0
matrix-rust-sdk is an implementation of a Matrix client-server library in Rust, and matrix-sdk-crypto is the Matrix encryption library.
network
low complexity
matrix CWE-322
7.5
2022-09-29 CVE-2022-39250 Improper Authentication vulnerability in Matrix Javascript SDK
Matrix JavaScript SDK is the Matrix Client-Server software development kit (SDK) for JavaScript.
network
low complexity
matrix CWE-287
7.5
2022-09-28 CVE-2022-39255 Improper Authentication vulnerability in Matrix Software Development KIT
Matrix iOS SDK allows developers to build iOS apps compatible with Matrix.
network
low complexity
matrix CWE-287
7.5
2022-09-28 CVE-2022-39257 Improper Authentication vulnerability in Matrix Software Development KIT
Matrix iOS SDK allows developers to build iOS apps compatible with Matrix.
network
low complexity
matrix CWE-287
7.5
2022-09-28 CVE-2022-39246 Key Exchange without Entity Authentication vulnerability in Matrix Software Development KIT
matrix-android-sdk2 is the Matrix SDK for Android.
network
low complexity
matrix CWE-322
5.3
2022-09-28 CVE-2022-39248 Key Exchange without Entity Authentication vulnerability in Matrix Software Development KIT
matrix-android-sdk2 is the Matrix SDK for Android.
network
low complexity
matrix CWE-322
7.5
2022-09-28 CVE-2022-39249 Improper Authentication vulnerability in Matrix Javascript SDK
Matrix Javascript SDK is the Matrix Client-Server SDK for JavaScript.
network
low complexity
matrix CWE-287
7.5
2022-09-28 CVE-2022-39251 Improper Authentication vulnerability in Matrix Javascript SDK
Matrix Javascript SDK is the Matrix Client-Server SDK for JavaScript.
network
low complexity
matrix CWE-287
7.5