CVE-2022-35250

4.3MEDIUM

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.

发布于: 9/23/2022更新于: 5/22/2025

描述

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.

AI分析AI驱动

受影响产品

rocket.chatrocket.chat

参考资料