VDB

CVE-2024-52602

CVE-2024-52602 PUBLISHED CVSS 5 MEDIUM

Matrix Media Repo (MMR) allows Server-Side Request Forgery (SSRF) on redirects and federation

EPSS 0.12% · 30.6th percentile

Risk Scores

CVSS 3.1
5
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
EPSS Score
0.12%
30.6th percentile

Affected Products

VendorProductVersions
github.comt2bot/matrix-media-repo0, 0
t2botmatrix-media-repo< 1.3.8, 0, 0

Timeline

  • Jan 21, 1970 Security Advisory
  • Jan 16, 2025 CVE Published
  • Jan 16, 2025 PoC Published
  • Jan 17, 2025 EPSS Score
  • Feb 1, 2025 EPSS Score
  • Feb 17, 2025 EPSS Score
  • Mar 4, 2025 EPSS Score
  • Mar 20, 2025 EPSS Score
  • Apr 3, 2025 Coalition ESS Score
  • Apr 4, 2025 EPSS Score
  • Apr 20, 2025 EPSS Score
  • May 5, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›