Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-51749

Опубликовано: 12 нояб. 2024
Источник: debian
EPSS Низкий

Описание

Element is a Matrix web client built using the Matrix React SDK. Versions of Element Web and Desktop earlier than 1.11.85 do not check if thumbnails for attachments, stickers and images are coherent. It is possible to add thumbnails to events trigger a file download once clicked. Fixed in element-web 1.11.85.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
element-webitppackage

EPSS

Процентиль: 27%
0.00098
Низкий

Связанные уязвимости

CVSS3: 3.5
nvd
около 1 года назад

Element is a Matrix web client built using the Matrix React SDK. Versions of Element Web and Desktop earlier than 1.11.85 do not check if thumbnails for attachments, stickers and images are coherent. It is possible to add thumbnails to events trigger a file download once clicked. Fixed in element-web 1.11.85.

EPSS

Процентиль: 27%
0.00098
Низкий