-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| org.matrix.android:matrix-android-sdk2 | maven | < 1.2.2 | 1.2.2 |
The vulnerability stems from improper device identity verification during encryption key sharing. The patches show critical changes in how device authentication is handled:
Ongoing coverage of React2Shell