CVE-2024-53867

CVSS V2 None CVSS V3 None
Description
Synapse is an open-source Matrix homeserver. The Sliding Sync feature on Synapse versions between 1.113.0rc1 and 1.120.0 can leak partial room state changes to users no longer in a room. Non-state events, like messages, are unaffected. This vulnerability is fixed in 1.120.1.
Overview
  • CVE ID
  • CVE-2024-53867
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-12-03T16:52:01.596Z
  • Last Modified Date
  • 2024-12-03T19:07:19.919Z
History
Created Old Value New Value Data Type Notes
2024-12-04 13:30:11 Added to TrackCVE