matrix-org Matrix Appservice Bridge Vulnerabilities
Matrix-org Matrix-appservice-bridge vulnerabilities.
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
matrix-appservice-bridge doesn't verify the sub parameter of an openId token exhange, allowing unauthorized access to provisioning APIs
CVE-2023-38691Matrix-orgMatrix-appservice-bridge5MEDIUMAutomatic room upgrade handling can be used maliciously to bridge a room non-consentually
CVE-2021-32659Matrix-orgMatrix-appservice-bridge6.5MEDIUM
4 August 2023
16 June 2021
No more vulnerabilities to load.