matrix-react-sdk is a react-based SDK for inserting a Matrix chat/VoIP client into a web page. Prior to version 3.71.0, plain text messages containing HTML tags are rendered as HTML in the search results. To exploit this, an attacker needs to trick a user into searching for a specific message containing an HTML injection payload. No cross-site scripting attack is possible due to the hardcoded content security policy. Version 3.71.0 of the SDK patches over the issue. As a workaround, restarting the client will clear the HTML injection.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-1433 matrix-react-sdk is a react-based SDK for inserting a Matrix chat/VoIP client into a web page. Prior to version 3.71.0, plain text messages containing HTML tags are rendered as HTML in the search results. To exploit this, an attacker needs to trick a user into searching for a specific message containing an HTML injection payload. No cross-site scripting attack is possible due to the hardcoded content security policy. Version 3.71.0 of the SDK patches over the issue. As a workaround, restarting the client will clear the HTML injection.
Github GHSA Github GHSA GHSA-xv83-x443-7rmw HTML injection in search results via plaintext message highlighting
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 03 Feb 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2025-02-03T17:54:55.060Z

Reserved: 2023-04-13T13:25:18.831Z

Link: CVE-2023-30609

cve-icon Vulnrichment

Updated: 2024-08-02T14:28:51.679Z

cve-icon NVD

Status : Modified

Published: 2023-04-25T21:15:10.843

Modified: 2024-11-21T08:00:30.010

Link: CVE-2023-30609

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.