Security disclosure for matrix-js-sdk (CVE-2024-47080) and matrix-react-sdk (CVE-2024-47824)
https://matrix.org/blog/2024/10/security-disclosure-matrix-js-sdk-and-matrix-react-sdk/
https://matrix.org/blog/2024/10/security-disclosure-matrix-js-sdk-and-matrix-react-sdk/
3 Comments
mox@lemmy.sdf.org · 1 pts · 1y
I don't know if Element Web/Desktop was affected by the vulnerabilities in the title, but another one (also announced today) is fixed in Element Web/Desktop v1.11.81.
https://github.com/element-hq/element-web/security/advisories/GHSA-3jm3-x98c-r34x
fz0x1@lemmy.ml · 1 pts · 1y
Nice backdoors)
toastal@lemmy.ml · -2 pts · 1y
I mean Matrix was intiated by Israeli intelligence so not unreasonable