vulnerability

FreeBSD: VID-42675046-fa70-11e9-ba4e-901b0e934d69: py-matrix-synapse -- missing signature checks on some federation APIs

Severity
8
CVSS
(AV:N/AC:L/Au:S/C:C/I:P/A:N)
Published
Oct 29, 2019
Added
Nov 29, 2019
Modified
Dec 10, 2025

Description

Matrix developers report: Make sure that [...] events sent over /send_join, /send_leave, and /invite, are correctly signed and come from the expected servers.

Solutions

freebsd-upgrade-package-py35-matrix-synapsefreebsd-upgrade-package-py36-matrix-synapsefreebsd-upgrade-package-py37-matrix-synapse

References

Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.