Rocket.Chat 6.12.0, 6.11.2, 6.10.5, 6.9.6, 6.8.6, 6.7.8, and earlier is vulnerable to denial of service (DoS). Attackers who craft messages with specific characters may crash the workspace due to an issue in the message parser.
References
Link | Resource |
---|---|
https://docs.rocket.chat/docs/rocketchat-security-fixes-updates-and-advisories | Release Notes |
https://github.com/RocketChat/Rocket.Chat/pull/33227 | Patch |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-09-25 01:15
Updated : 2025-03-25 17:16
NVD link : CVE-2024-46935
Mitre link : CVE-2024-46935
CVE.ORG link : CVE-2024-46935
JSON object : View
Products Affected
rocket.chat
- rocket.chat
CWE