CVE-2022-35250

4.3MEDIUM

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.

Veröffentlicht: 9/23/2022Aktualisiert: 5/22/2025

Beschreibung

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.

KI-AnalyseKI-gestützt

Betroffene Produkte

rocket.chatrocket.chat

Referenzen