CVE-2022-35250

4.3MEDIUM

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.

Publicado: 9/23/2022Actualizado: 5/22/2025

Descripción

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.

Análisis IAImpulsado por IA

Productos Afectados

rocket.chatrocket.chat

Referencias