VDB

CVE-2023-42453

CVE-2023-42453 PUBLISHED CVSS 3.0999999046325684 LOW

matrix-synapse vulnerable to improper validation of receipts allows forged read receipts

EPSS 0.13% · 32.3th percentile

Risk Scores

CVSS 3.1
3.0999999046325684
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N
EPSS Score
0.13%
32.3th percentile

Affected Products

VendorProductVersions
matrixsynapse1.34.0
PyPImatrix-synapse0.34.0
matrix-orgsynapse>= 0.34.0, < 1.93.0
fedoraprojectfedora37, 38

Timeline

  • Sep 18, 2023 Fix PR Merged
  • Sep 26, 2023 CVE Published
  • Sep 27, 2023 EPSS Score
  • Oct 29, 2023 EPSS Score
  • Nov 30, 2023 EPSS Score
  • Jan 1, 2024 EPSS Score
  • Feb 2, 2024 EPSS Score
  • Mar 5, 2024 EPSS Score
  • Apr 6, 2024 EPSS Score
  • May 8, 2024 EPSS Score
  • Jul 10, 2024 EPSS Score
  • Aug 11, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›