Known vulnerabilities in Matrix.org Synapse

Vendor: Matrix.org
Website: https://matrix.org/blog/home/
Total Security Bulletins: 25

Security bulletins (25)

Secuity bulletin Severity Status Published
SB2025033143: Remote denial of service in Matrix Synapse High
Patched Exploited
31.03.2025
SB2023100438: Multiple vulnerabilities in Matrix Synapse Low
Patched
04.10.2023
SB2023091923: Heap-based buffer overflow in Matrix Synapse Critical
Patched Exploited
19.09.2023
SB2023091836: Matrix Synapse update for libwebp Critical
Patched Exploited
18.09.2023
SB20230820232: Information disclosure in Synapse Matrix Low
Patched
20.08.2023
SB2023060718: Multiple vulnerabilities in Matrix Synapse Medium
Patched
07.06.2023
SB2023052216: Denial of service in Matrix Synapse Medium
Patched
22.05.2023
SB2023052215: Denial of service in Matrix Synapse Medium
Patched
22.05.2023
SB2023051776: Denial of service in Matrix Synapse Medium
Patched
17.05.2023
SB2021112415: Path traversal in Synapse Medium
Patched
24.11.2021
SB2021090103: Multiple vulnerabilities in Matrix Synapse Low
Patched
01.09.2021
SB2021051229: Denial of service in Synapse Low
Patched
12.05.2021
SB2021030111: Multiple vulnerabilities in Matrix Synapse Medium
Patched
01.03.2021
SB2020112702: Denial of service in Matrix Synapse Medium
Patched
27.11.2020
SB2020032419: Multiple vulnerabilities in Twisted Web component in Synapse Medium
Patched
24.03.2020
SB2019121925: Improper authorization in Synapse Low
Patched
19.12.2019
SB2019112906: Authentication bypass in Synapse Medium
Patched
29.11.2019
SB2019111339: Insufficient verification of data authenticity in matrix-synapse package High
Patched
13.11.2019
SB2019050925: Weak pseudo-random number generator in Matrix Sydent and Synapse Medium
Patched
09.05.2019
SB2019032141: Predictable secret key in Matrix Synapse Medium
Patched
21.03.2019
SB2018091858: Spoofing attack in Matrix Synapse High
Patched
18.09.2018
SB2018080711: Security restrictions bypass in Matrix Synapse Low
Patched
07.08.2018
SB2018061414: Input validation error in Matrix Synapse Medium
Patched
14.06.2018
SB2018050901: Remote denial of service in Matrix Synapse Medium
Patched Exploited
09.05.2018
SB2017080206: Multiple vulnerabilities in Matrix Synapse High
Patched Public exploit
02.08.2017