CVE-2018-12423
In Synapse before 0.31.2, unauthorised users can hijack rooms when there is no m.room.power_levels event in force.
In Synapse before 0.31.2, unauthorised users can hijack rooms when there is no m.room.power_levels event in force.
HIGH · CVSS 7.5
EPSS 0.00272
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0