Loading HuntDB...

RocketChat

2 Products 5 CVEs

CVE Severity Distribution (All Time)

Critical
0
High
2
Medium
3
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 4 CVEs

Recent CVEs

CVE-2024-42027 MEDIUM 8 months ago

The E2EE password entropy generated by Rocket.Chat Mobile prior to version 4.5.1 is insufficient, allowing attackers to crack it if they have the app…

CVE-2024-46936 HIGH 8 months, 3 weeks ago

Rocket.Chat 6.12.0, 6.11.2, 6.10.5, 6.9.6, 6.8.6, 6.7.8, and before is vulnerable to a message forgery / impersonation issue. Attackers can abuse the…

CVE-2024-39713 HIGH 10 months, 1 week ago

A Server-Side Request Forgery (SSRF) affects Rocket.Chat's Twilio webhook endpoint before version 6.10.1.

CVE-2024-37405 MEDIUM 11 months ago

Livechat messages can be leaked by combining two NoSQL injections affecting livechat:loginByToken (pre-authentication) and livechat:loadHistory.