Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
npm/matrix-react-sdk — 9 CVEs · VulnScope
pkg:npm/
matrix-react-sdk
9 total CVEs
HIGH
3
MEDIUM
4
LOW
1
✅ Check your installed version
Check
All known vulnerabilities
HIGH
8.2
CVE-2023-30609
HTML injection in search results via plaintext message highlighting
from 0, < 3.71.0
HIGH
8.2
CVE-2023-28103
Prototype pollution in matrix-react-sdk
from 0, < 3.69.0
HIGH
7.2
CVE-2022-36060
matrix-react-sdk Prototype pollution vulnerability
from 0, < 3.53.0
MEDIUM
6.1
matrix-react-sdk vulnerable to XSS in Export Chat feature
>= 3.32.0, < 3.76.0
MEDIUM
4.2
Improper file handling in matrix-react-sdk
from 0, < 3.21.0
MEDIUM
4.2
Improper file handling in matrix-react-sdk
from 0, < 3.21.0
MEDIUM
4.1
Matrix SDK for React's URL preview setting for a room is controllable by the homeserver
from 0, < 3.105.1
LOW
2.6
User content sandbox can be confused into opening arbitrary documents
from 0, < 3.15.0
NONE
0.0
Malicious homeservers can steal message keys when the matrix-react-sdk user invites another user to a room
>= 3.18.0, < 3.102.0
CVE-2023-37259
CVE-2021-32622
CVE-2021-32622
CVE-2024-42347
CVE-2021-21320
CVE-2024-47824