Vulnerabilities > Matrix > Sydent

DATE CVE VULNERABILITY TITLE RISK
2023-08-04 CVE-2023-38686 Unspecified vulnerability in Matrix Sydent
Sydent is an identity server for the Matrix communications protocol.
high complexity
matrix
5.3
2021-04-15 CVE-2021-29432 Unspecified vulnerability in Matrix Sydent
Sydent is a reference matrix identity server.
network
low complexity
matrix
5.7
2021-04-15 CVE-2021-29431 Server-Side Request Forgery (SSRF) vulnerability in Matrix Sydent
Sydent is a reference Matrix identity server.
network
low complexity
matrix CWE-918
6.5
2021-04-15 CVE-2021-29430 Allocation of Resources Without Limits or Throttling vulnerability in Matrix Sydent
Sydent is a reference Matrix identity server.
network
low complexity
matrix CWE-770
7.5
2021-04-15 CVE-2021-29433 Improper Input Validation vulnerability in Matrix Sydent
Sydent is a reference Matrix identity server.
network
low complexity
matrix CWE-20
4.3
2019-05-09 CVE-2019-11842 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in Matrix Sydent and Synapse
An issue was discovered in Matrix Sydent before 1.0.3 and Synapse before 0.99.3.1.
network
low complexity
matrix CWE-338
7.5
2019-04-19 CVE-2019-11340 Improper Input Validation vulnerability in Matrix Sydent 1.0.0/1.0.1
util/emailutils.py in Matrix Sydent before 1.0.2 mishandles registration restrictions that are based on e-mail domain, if the allowed_local_3pids option is enabled.
network
high complexity
matrix CWE-20
5.9