CVE-2018-12423

In Synapse before 0.31.2, unauthorised users can hijack rooms when there is no m.room.power_levels event in force.
References
Configurations

Configuration 1

cpe:2.3:a:matrix:synapse:*:*:*:*:*:*:*:*

Information

Published : 2018-06-14 09:29

Updated : 2019-10-03 12:03


NVD link : CVE-2018-12423

Mitre link : CVE-2018-12423

Products Affected
No products.