Loading HuntDB...

GHSA-c9vx-2g7w-rp65

GitHub Security Advisory

matrix-react-sdk vulnerable to XSS in Export Chat feature

✓ GitHub Reviewed MODERATE Has CVE

Advisory Details

### Description

The Export Chat feature includes certain attacker-controlled elements in the generated document without sufficient escaping, leading to stored XSS.

### Impact

Since the Export Chat feature generates a separate document, an attacker can only inject code run from the `null` origin, restricting the impact.

However, the attacker can still potentially use the XSS to leak message contents. A malicious homeserver is a potential attacker since the affected inputs are controllable server-side.

### Patches
This was patched in matrix-react-sdk 3.76.0.

### Workarounds
None, other than not using the Export Chat feature.

### References
N/A

Affected Packages

npm matrix-react-sdk
Affected versions: 3.32.0 (fixed in 3.76.0)

Related CVEs

Key Information

GHSA ID
GHSA-c9vx-2g7w-rp65
Published
July 18, 2023 4:58 PM
Last Modified
July 19, 2023 8:04 PM
CVSS Score
5.0 /10
Primary Ecosystem
npm
Primary Package
matrix-react-sdk
GitHub Reviewed
✓ Yes

Dataset

Last updated: November 25, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.