Search CVE reports


Toggle filters

21 – 30 of 41 results


CVE-2021-41281

Medium priority
Vulnerable

Synapse is a package for Matrix homeservers written in Python 3/Twisted. Prior to version 1.47.1, Synapse instances with the media repository enabled can be tricked into downloading a file from a remote server into an arbitrary...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2021-39164

Medium priority
Vulnerable

Matrix is an ecosystem for open federated Instant Messaging and Voice over IP. In versions 1.41.0 and prior, unauthorised users can access the membership (list of members, with their display names) of a room if they know the ID of...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Needs evaluation Vulnerable Vulnerable
Show less packages

CVE-2021-39163

Medium priority
Vulnerable

Matrix is an ecosystem for open federated Instant Messaging and Voice over IP. In versions 1.41.0 and prior, unauthorised users can access the name, avatar, topic and number of members of a room if they know the ID of the room....

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Needs evaluation Vulnerable Vulnerable
Show less packages

CVE-2021-29471

Medium priority
Vulnerable

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.33.2 "Push rules" can specify conditions...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2021-21394

Medium priority
Vulnerable

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.28.0 Synapse is missing input validation...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2021-21393

Medium priority
Vulnerable

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.28.0 Synapse is missing input validation...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Vulnerable Vulnerable Not affected
Show less packages

CVE-2021-21392

Medium priority
Vulnerable

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.28.0 requests to user provided domains...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2021-21333

Low priority
Needs evaluation

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.27.0, the notification emails sent for...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Not affected Needs evaluation Needs evaluation
Show less packages

CVE-2021-21332

Medium priority
Needs evaluation

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.27.0, the password reset endpoint served...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Not affected Needs evaluation Needs evaluation
Show less packages

CVE-2021-21274

Medium priority
Needs evaluation

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.25.0, a malicious homeserver could...

1 affected package

matrix-synapse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
matrix-synapse Not affected Not affected Needs evaluation Needs evaluation
Show less packages