<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:46:01 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-161094</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-161094</link>
      <description>EUVD-2026-161094</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-161094</guid>
    </item>
    <item>
      <title>fkie_cve-2024-42369</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-42369</link>
      <description>&lt;p&gt;matrix-js-sdk is a Matrix messaging protocol Client-Server SDK for JavaScript. A malicious homeserver can craft a room or room structure such that the predecessors form a cycle. The matrix-js-sdk&amp;#39;s getRoomUpgradeHistory function will infinitely recurse in this case, causing the code to hang. This method is public but also called by the &amp;#39;leaveRoomChain()&amp;#39; method, so leaving a room will also trigger the bug. This was patched in matrix-js-sdk 34.3.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;matrix-js-sdk is a Matrix messaging protocol Client-Server SDK for JavaScript. A malicious homeserver can craft a room or room structure such that the predecessors form a cycle. The matrix-js-sdk&amp;#39;s getRoomUpgradeHistory function will infinitely recurse in this case, causing the code to hang. This method is public but also called by the &amp;#39;leaveRoomChain()&amp;#39; method, so leaving a room will also trigger the bug. This was patched in matrix-js-sdk 34.3.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-42369</guid>
    </item>
    <item>
      <title>GHSA-vhr5-g3pm-49fm — matrix-js-sdk will freeze when a user sets a room with itself as a its predecessor</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vhr5-g3pm-49fm</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: matrix-js-sdk&lt;/p&gt;
&lt;p&gt;### Impact
A malicious homeserver can craft a room or room structure such that the predecessors form a cycle. The matrix-js-sdk&amp;#39;s `getRoomUpgradeHistory` function will infinitely recurse in this case, causing the code to hang. This method is public but also called by the &amp;#39;leaveRoomChain()&amp;#39; method, so leaving a room will also trigger the bug.&lt;/p&gt;
&lt;p&gt;Even if the CVSS score would be 4.1 ([AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:L](https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator?vector=AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:L&amp;amp;version=3.1)) we classify this as High severity issue.&lt;/p&gt;
&lt;p&gt;### Patches
This was patched in matrix-js-sdk 34.3.1.&lt;/p&gt;
&lt;p&gt;### Workarounds
Sanity check rooms before passing them to the matrix-js-sdk or avoid calling either `getRoomUpgradeHistory` or `leaveRoomChain`.&lt;/p&gt;
&lt;p&gt;### References
N/A.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: matrix-js-sdk&lt;/p&gt;
&lt;p&gt;### Impact
A malicious homeserver can craft a room or room structure such that the predecessors form a cycle. The matrix-js-sdk&amp;#39;s `getRoomUpgradeHistory` function will infinitely recurse in this case, causing the code to hang. This method is public but also called by the &amp;#39;leaveRoomChain()&amp;#39; method, so leaving a room will also trigger the bug.&lt;/p&gt;
&lt;p&gt;Even if the CVSS score would be 4.1 ([AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:L](https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator?vector=AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:L&amp;amp;version=3.1)) we classify this as High severity issue.&lt;/p&gt;
&lt;p&gt;### Patches
This was patched in matrix-js-sdk 34.3.1.&lt;/p&gt;
&lt;p&gt;### Workarounds
Sanity check rooms before passing them to the matrix-js-sdk or avoid calling either `getRoomUpgradeHistory` or `leaveRoomChain`.&lt;/p&gt;
&lt;p&gt;### References
N/A.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vhr5-g3pm-49fm</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:14288-1 — element-desktop-1.11.75-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:14288-1</link>
      <description>&lt;p&gt;element-desktop-1.11.75-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;element-desktop-1.11.75-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:14288-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-42369</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-42369</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: node-matrix-js-sdk, Ubuntu:22.04:LTS: node-matrix-js-sdk, Ubuntu:24.04:LTS: node-matrix-js-sdk&lt;/p&gt;
&lt;p&gt;matrix-js-sdk is a Matrix messaging protocol Client-Server SDK for JavaScript. A malicious homeserver can craft a room or room structure such that the predecessors form a cycle. The matrix-js-sdk&amp;#39;s getRoomUpgradeHistory function will infinitely recurse in this case, causing the code to hang. This method is public but also called by the &amp;#39;leaveRoomChain()&amp;#39; method, so leaving a room will also trigger the bug. This was patched in matrix-js-sdk 34.3.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: node-matrix-js-sdk, Ubuntu:22.04:LTS: node-matrix-js-sdk, Ubuntu:24.04:LTS: node-matrix-js-sdk&lt;/p&gt;
&lt;p&gt;matrix-js-sdk is a Matrix messaging protocol Client-Server SDK for JavaScript. A malicious homeserver can craft a room or room structure such that the predecessors form a cycle. The matrix-js-sdk&amp;#39;s getRoomUpgradeHistory function will infinitely recurse in this case, causing the code to hang. This method is public but also called by the &amp;#39;leaveRoomChain()&amp;#39; method, so leaving a room will also trigger the bug. This was patched in matrix-js-sdk 34.3.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-42369</guid>
    </item>
  </channel>
</rss>
