An improper access control vulnerability exists prior to...
High severity
Unreviewed
Published
Mar 11, 2023
to the GitHub Advisory Database
•
Updated Mar 25, 2023
Description
Published by the National Vulnerability Database
Mar 10, 2023
Published to the GitHub Advisory Database
Mar 11, 2023
Last updated
Mar 25, 2023
An improper access control vulnerability exists prior to v6 that could allow an attacker to break the E2E encryption of a chat room by a user changing the group key of a chat room.
References