CVE-2022-35250

4.3MEDIUM

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.

Publicado: 9/23/2022Atualizado: 5/22/2025

Descrição

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.

Análise IADesenvolvido por IA

Produtos Afetados

rocket.chatrocket.chat

Referências