Matrix records
82 published records for vendor matrix.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 91.5%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation14
- CWE-287 Improper Authentication10
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor5
- CWE-770 Allocation of Resources Without Limits or Throttling4
- CWE-400 Uncontrolled Resource Consumption4
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')3
The weakness classes this vendor ships most often: where to look.
CWEAll records
82 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2021-34813No exploit | Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room matrix · olm · CWE-787 | Critical9.8 | — | 4.3% | Jun 16, 2021 |
40Plan | CVE-2021-44538No exploit | The olm_session_describe function in Matrix libolm before 3.2.7 is vulnerable to a buffer overflow.matrix · element · CWE-119 | Critical9.8 | — | 1.9% | Dec 14, 2021 |
39Monitor | CVE-2019-18835No exploit | Matrix Synapse before 1.5.0 mishandles signature checking on some federation APIs.matrix · synapse · CWE-345 | Critical9.8 | — | 0.9% | Nov 7, 2019 |
39Monitor | CVE-2023-38690No exploit | matrix-appservice-irc IRC command injection via admin commands containing newlinesmatrix · matrix irc bridge · CWE-20 | Critical9.8 | — | 0.9% | Aug 4, 2023 |
36Monitor | CVE-2023-43656No exploit | Sandbox escape for instances that have enabled transformation functions in matrix-hookshotmatrix · hookshot · CWE-74 | Critical9.0 | — | 0.3% | Sep 27, 2023 |
35Monitor | CVE-2018-16515No exploit | Matrix Synapse before 0.33.3.1 allows remote attackers to spoof events and possibly have unspecified other impacts by leveraging improper trmatrix · synapse · CWE-347 | High8.8 | — | 1.5% | Sep 18, 2018 |
35Monitor | CVE-2022-29166No exploit | Improper handling of multiline messages in matrix-appservice-ircmatrix · matrix irc bridge · CWE-74 | High8.8 | — | 1.0% | May 5, 2022 |
35Monitor | CVE-2022-39203No exploit | Parsing issue in matrix-org/node-irc leading to room takeoversmatrix · matrix irc bridge · CWE-269 | High8.8 | — | 0.8% | Sep 13, 2022 |
35Monitor | CVE-2022-36009No exploit | Incorrect parsing of access level in gomatrixserverlib and dendritematrix · dendrite · CWE-863 | High8.8 | — | 0.8% | Aug 19, 2022 |
34Monitor | CVE-2024-52815No exploit | Synapse allows a a malformed invite to break the invitee's `/sync`matrix · synapse · CWE-20 | High8.7 | — | 0.6% | Dec 3, 2024 |
32Monitor | CVE-2021-21332No exploit | Cross-site scripting (XSS) vulnerability in the password reset endpointmatrix · synapse · CWE-79 | High8.2 | — | 1.2% | Mar 26, 2021 |
32Monitor | CVE-2023-28427No exploit | Prototype pollution in matrix-js-sdkmatrix · javascript sdk · CWE-1321 | High8.2 | — | 1.2% | Mar 28, 2023 |
32Monitor | CVE-2024-52805No exploit | Synapse allows unsupported content types to lead to memory exhaustionmatrix · synapse · CWE-770 | High8.2 | — | 0.7% | Dec 3, 2024 |
32Monitor | CVE-2024-53863No exploit | Synapse can be forced to thumbnail unexpected file formats, invoking external, potentially untrustworthy decodersmatrix · synapse · CWE-434 | High8.2 | — | 0.6% | Dec 3, 2024 |
31Monitor | CVE-2020-26890No exploit | Matrix Synapse before 1.20.0 erroneously permits non-standard NaN, Infinity, and -Infinity JSON values in fields of m.room.member events, almatrix · synapse · CWE-20 | High7.5 | — | 3.0% | Nov 23, 2020 |
31Monitor | CVE-2019-5885No exploit | Matrix Synapse before 0.34.0.1, when the macaroon_secret_key authentication parameter is not set, uses a predictable value to derive a secrematrix · synapse · CWE-330 | High7.5 | — | 2.4% | Mar 21, 2019 |
31Monitor | CVE-2018-12423No exploit | In Synapse before 0.31.2, unauthorised users can hijack rooms when there is no m.room.power_levels event in force.matrix · synapse | High7.5 | — | 1.8% | Jun 14, 2018 |
31Monitor | CVE-2021-29430No exploit | Denial of service attack via memory exhaustionmatrix · sydent · CWE-20 | High7.5 | — | 1.8% | Apr 15, 2021 |
31Monitor | CVE-2018-12291No exploit | The on_get_missing_events function in handlers/federation.py in Matrix Synapse before 0.31.1 has a security bug in the get_missing_events fematrix · synapse | High7.5 | — | 1.8% | Jun 13, 2018 |
31Monitor | CVE-2019-11842No exploit | An issue was discovered in Matrix Sydent before 1.0.3 and Synapse before 0.99.3.1.matrix · sydent · CWE-338 | High7.5 | — | 1.8% | May 9, 2019 |
30Monitor | CVE-2021-41281No exploit | Path traversal in Matrix Synapsematrix · synapse · CWE-22 | High7.5 | — | 1.6% | Nov 23, 2021 |
30Monitor | CVE-2018-10657No exploit | Matrix Synapse before 0.28.1 is prone to a denial of service flaw where malicious events injected with depth = 2^63 - 1 render rooms unusablmatrix · synapse · CWE-20 | High7.5 | — | 1.5% | May 2, 2018 |
30Monitor | CVE-2022-39249No exploit | Matrix Javascript SDK vulnerable to impersonation via forwarded Megolm sessionsmatrix · javascript sdk · CWE-287 | High7.5 | — | 1.3% | Sep 28, 2022 |
30Monitor | CVE-2025-30355No exploit | Synapse vulnerable to federation denial of service via malformed eventsmatrix · synapse · CWE-20 | High7.5 | — | 1.2% | Mar 26, 2025 |
30Monitor | CVE-2022-39250No exploit | Matrix JavaScript SDK vulnerable to key/device identifier confusion in SAS verificationmatrix · javascript sdk · CWE-287 | High7.5 | — | 1.2% | Sep 29, 2022 |
- CVE-2021-3481340Plan
Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room
CriticalCVSS 9.8No exploitEPSS 4%matrix · olmJun 16, 2021
- CVE-2021-4453840Plan
The olm_session_describe function in Matrix libolm before 3.2.7 is vulnerable to a buffer overflow.
CriticalCVSS 9.8No exploitEPSS 2%matrix · elementDec 14, 2021
- CVE-2019-1883539Monitor
Matrix Synapse before 1.5.0 mishandles signature checking on some federation APIs.
CriticalCVSS 9.8No exploitEPSS 1%matrix · synapseNov 7, 2019
- CVE-2023-3869039Monitor
matrix-appservice-irc IRC command injection via admin commands containing newlines
CriticalCVSS 9.8No exploitEPSS 1%matrix · matrix irc bridgeAug 4, 2023
- CVE-2023-4365636Monitor
Sandbox escape for instances that have enabled transformation functions in matrix-hookshot
CriticalCVSS 9.0No exploitEPSS 0%matrix · hookshotSep 27, 2023
- CVE-2018-1651535Monitor
Matrix Synapse before 0.33.3.1 allows remote attackers to spoof events and possibly have unspecified other impacts by leveraging improper tr
HighCVSS 8.8No exploitEPSS 2%matrix · synapseSep 18, 2018
- CVE-2022-2916635Monitor
Improper handling of multiline messages in matrix-appservice-irc
HighCVSS 8.8No exploitEPSS 1%matrix · matrix irc bridgeMay 5, 2022
- CVE-2022-3920335Monitor
Parsing issue in matrix-org/node-irc leading to room takeovers
HighCVSS 8.8No exploitEPSS 1%matrix · matrix irc bridgeSep 13, 2022
- CVE-2022-3600935Monitor
Incorrect parsing of access level in gomatrixserverlib and dendrite
HighCVSS 8.8No exploitEPSS 1%matrix · dendriteAug 19, 2022
- CVE-2024-5281534Monitor
Synapse allows a a malformed invite to break the invitee's `/sync`
HighCVSS 8.7No exploitEPSS 1%matrix · synapseDec 3, 2024
- CVE-2021-2133232Monitor
Cross-site scripting (XSS) vulnerability in the password reset endpoint
HighCVSS 8.2No exploitEPSS 1%matrix · synapseMar 26, 2021
- CVE-2023-2842732Monitor
Prototype pollution in matrix-js-sdk
HighCVSS 8.2No exploitEPSS 1%matrix · javascript sdkMar 28, 2023
- CVE-2024-5280532Monitor
Synapse allows unsupported content types to lead to memory exhaustion
HighCVSS 8.2No exploitEPSS 1%matrix · synapseDec 3, 2024
- CVE-2024-5386332Monitor
Synapse can be forced to thumbnail unexpected file formats, invoking external, potentially untrustworthy decoders
HighCVSS 8.2No exploitEPSS 1%matrix · synapseDec 3, 2024
- CVE-2020-2689031Monitor
Matrix Synapse before 1.20.0 erroneously permits non-standard NaN, Infinity, and -Infinity JSON values in fields of m.room.member events, al
HighCVSS 7.5No exploitEPSS 3%matrix · synapseNov 23, 2020
- CVE-2019-588531Monitor
Matrix Synapse before 0.34.0.1, when the macaroon_secret_key authentication parameter is not set, uses a predictable value to derive a secre
HighCVSS 7.5No exploitEPSS 2%matrix · synapseMar 21, 2019
- CVE-2018-1242331Monitor
In Synapse before 0.31.2, unauthorised users can hijack rooms when there is no m.room.power_levels event in force.
HighCVSS 7.5No exploitEPSS 2%matrix · synapseJun 14, 2018
- CVE-2021-2943031Monitor
Denial of service attack via memory exhaustion
HighCVSS 7.5No exploitEPSS 2%matrix · sydentApr 15, 2021
- CVE-2018-1229131Monitor
The on_get_missing_events function in handlers/federation.py in Matrix Synapse before 0.31.1 has a security bug in the get_missing_events fe
HighCVSS 7.5No exploitEPSS 2%matrix · synapseJun 13, 2018
- CVE-2019-1184231Monitor
An issue was discovered in Matrix Sydent before 1.0.3 and Synapse before 0.99.3.1.
HighCVSS 7.5No exploitEPSS 2%matrix · sydentMay 9, 2019
- CVE-2021-4128130Monitor
Path traversal in Matrix Synapse
HighCVSS 7.5No exploitEPSS 2%matrix · synapseNov 23, 2021
- CVE-2018-1065730Monitor
Matrix Synapse before 0.28.1 is prone to a denial of service flaw where malicious events injected with depth = 2^63 - 1 render rooms unusabl
HighCVSS 7.5No exploitEPSS 2%matrix · synapseMay 2, 2018
- CVE-2022-3924930Monitor
Matrix Javascript SDK vulnerable to impersonation via forwarded Megolm sessions
HighCVSS 7.5No exploitEPSS 1%matrix · javascript sdkSep 28, 2022
- CVE-2025-3035530Monitor
Synapse vulnerable to federation denial of service via malformed events
HighCVSS 7.5No exploitEPSS 1%matrix · synapseMar 26, 2025
- CVE-2022-3925030Monitor
Matrix JavaScript SDK vulnerable to key/device identifier confusion in SAS verification
HighCVSS 7.5No exploitEPSS 1%matrix · javascript sdkSep 29, 2022