Description
An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the all_public_streams API feature resulted in guest users being able to receive message traffic to public streams that should have been only accessible to members of the organization.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-17402 | An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the all_public_streams API feature resulted in guest users being able to receive message traffic to public streams that should have been only accessible to members of the organization. |
References
| Link | Providers |
|---|---|
| https://blog.zulip.com/2021/04/14/zulip-server-3-4/ |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T22:32:41.094Z
Reserved: 2021-04-09T00:00:00.000Z
Link: CVE-2021-30479
No data.
Status : Modified
Published: 2021-04-15T00:15:13.170
Modified: 2024-11-21T06:04:00.430
Link: CVE-2021-30479
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD