• CVE-2022-35249 | Rocket.Chat up to 4.x Direct Message getUserMentionsB

    From Security Bot@2:467/888.88 to All on Mon Sep 18 11:10:08 2023


    Title: CVE-2022-35249 | Rocket.Chat up to 4.x Direct Message getUserMentionsByChannel information disclosure
    Description: A vulnerability classified as problematic was found in Rocket.Chat up to 4.x. Affected by this vulnerability is the function getUserMentionsByChannel of the component Direct Message Handler. The manipulation leads to information disclosure.
    Link: https://vuldb.com/?id.209503
    Sat, 24 Sep 2022 09:25:51 +0200


    --- The information is for informational purposes only.
    * Origin: Read us with http://winpoint.org/ (2:467/888.88)