VDB
Sign up
LOW2.6

GHSA-52mq-6jcv-j79x

User content sandbox can be confused into opening arbitrary documents

Quick fix

GHSA-52mq-6jcv-j79x — matrix-react-sdk: upgrade to the fixed version with the command below.

npm install matrix-react-sdk@3.15.0

Details

### Impact

The user content sandbox can be abused to trick users into opening unexpected documents after several user interactions. The content can be opened with a `blob` origin from the Matrix client, so it is possible for a malicious document to access user messages and secrets.

### Patches

This has been fixed by https://github.com/matrix-org/matrix-react-sdk/pull/5657, which is included in 3.15.0.

### Workarounds

There are no known workarounds.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/matrix-react-sdk
Introduced in: 0Fixed in: 3.15.0
Fixnpm install matrix-react-sdk@3.15.0

References