VDB
CVE-2024-42369
CVE-2024-42369
PUBLISHED
CVSS 4.099999904632568 MEDIUM
matrix-js-sdk will freeze when a user sets a room with itself as a its predecessor
EPSS 0.48% · 39.1th percentile
Risk Scores
CVSS 3.1
4.099999904632568
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:L
EPSS Score
0.48%
39.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| npm | matrix-js-sdk | 0, 0 |
| matrix | javascript_sdk | 0, 0 |
| matrix-org | matrix-js-sdk | < 34.3.1, < 34.3.1 |
Timeline
- Jan 21, 1970 Security Advisory
- Aug 20, 2024 CVE Published
- Aug 20, 2024 PoC Published
- Aug 21, 2024 EPSS Score
- Sep 11, 2024 EPSS Score
- Oct 1, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 22, 2024 EPSS Score
- Nov 11, 2024 EPSS Score
- Nov 12, 2024 Coalition ESS Score
- Nov 13, 2024 Coalition ESS Score
- Dec 3, 2024 EPSS Score