Security Advisory

CVE-2022-35250

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-09-23 18:28:12
Last updated 2025-05-22 18:51:50
Assigner hackerone
State PUBLISHED

Description

A privilege escalation vulnerability exists in Rocket.chat <v5 which made it possible to elevate privileges for any authenticated user to view Direct messages without appropriate permissions.