Description
A vulnerability has been discovered in Rocket.Chat, where messages can be hidden regardless of the Message_KeepHistory or Message_ShowDeletedStatus server configuration. This allows users to bypass the intended message deletion behavior, hiding messages and deletion notices.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-32025 | A vulnerability has been discovered in Rocket.Chat, where messages can be hidden regardless of the Message_KeepHistory or Message_ShowDeletedStatus server configuration. This allows users to bypass the intended message deletion behavior, hiding messages and deletion notices. |
References
| Link | Providers |
|---|---|
| https://hackerone.com/reports/1379451 |
|
History
Tue, 28 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-346 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2025-01-28T20:28:02.478Z
Reserved: 2023-03-14T00:00:00.000Z
Link: CVE-2023-28318
Updated: 2024-08-02T12:38:25.386Z
Status : Modified
Published: 2023-05-09T22:15:10.083
Modified: 2025-01-28T21:15:14.500
Link: CVE-2023-28318
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD