CVE security advisories and vulnerability history for synapse by matrix-org.
32
Total CVEs
Published
0
In CISA KEV
Exploited in the wild
1
Public exploits
With known exploit
5.1
Avg CVSS
2018–2023
Last updated
Overview
matrix-org synapse has 32 published CVE records since 2018, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 1 have a known public exploit. The average CVSS base score across scored CVEs is 5.1.
This page aggregates every publicly disclosed vulnerability (CVE) affecting matrix-org synapse, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of matrix-org synapse's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical0
High1
Medium16
Low7
8 additional CVEs have no CVSS severity score.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of matrix-org synapse's CVEs are currently listed in CISA's KEV catalog.
Public exploits
1
One of matrix-org synapse's CVEs has a known public exploit available.
Affected versions and CVEs
Browse every matrix-org synapse version named in a CVE, then pick one to see only the CVEs that affect it.
Common questions about matrix-org synapse vulnerabilities.
How many CVEs does matrix-org synapse have?
matrix-org synapse has 32 published CVE records since 2018.
How many matrix-org synapse CVEs are in CISA KEV?
None of matrix-org synapse's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Are there public exploits for matrix-org synapse vulnerabilities?
Yes — 1 of matrix-org synapse's CVEs have a known public exploit.
Which versions of matrix-org synapse are affected?
618 distinct matrix-org synapse versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
What are the most common weakness types in matrix-org synapse CVEs?
matrix-org synapse's CVEs most often map to these CWE weakness types: CWE-400 (Uncontrolled Resource Consumption), CWE-200 (Exposure of Sensitive Information to an Unauthorized Actor), CWE-20 (Improper Input Validation), CWE-601 (URL Redirection to Untrusted Site ('Open Redirect')).
What is the average severity of matrix-org synapse CVEs?
The average CVSS base score across matrix-org synapse's scored CVEs is 5.1.