ZeroHour

CVE-2021-22892

PoC
CVSS 3.1
7.5 high
EPSS
2%p78
Published
()
Modified
Description

An information disclosure vulnerability exists in the Rocket.Chat server fixed v3.13, v3.12.2 & v3.11.3 that allowed email addresses to be disclosed by enumeration and validation checks.

Vendors
rocket.chat
Products
rocket.chat
Weakness
CWE-200, CWE-203
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.