Vulnerabilities > Telegram > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-06 CVE-2021-40532 Unspecified vulnerability in Telegram web K Alpha
Telegram Web K Alpha before 0.7.2 mishandles the characters in a document extension.
network
low complexity
telegram
7.5
2018-12-24 CVE-2018-20436 Server-Side Request Forgery (SSRF) vulnerability in Telegram and web
The "secret chat" feature in Telegram 4.9.1 for Android has a "side channel" in which Telegram servers send GET requests for URLs typed while composing a chat message, before that chat message is sent.
network
high complexity
telegram CWE-918
8.1
2018-09-19 CVE-2018-17231 Reachable Assertion vulnerability in Telegram Desktop 1.3.14
Telegram Desktop (aka tdesktop) 1.3.14 might allow attackers to cause a denial of service (assertion failure and application exit) via an "Edit color palette" search that triggers an "index out of range" condition.
network
low complexity
telegram CWE-617
7.5