Lucene search

K
cvelistMitreCVELIST:CVE-2018-12291
HistoryJun 13, 2018 - 2:00 p.m.

CVE-2018-12291

2018-06-1314:00:00
mitre
www.cve.org
6
cve-2018-12291
matrix synapse
federation api
security bug
event visibility rules

AI Score

7.5

Confidence

High

EPSS

0.002

Percentile

51.7%

The on_get_missing_events function in handlers/federation.py in Matrix Synapse before 0.31.1 has a security bug in the get_missing_events federation API where event visibility rules were not applied correctly.

AI Score

7.5

Confidence

High

EPSS

0.002

Percentile

51.7%