pkg:crates.io/matrix-sdk-crypto
6 total CVEsMEDIUM9
✅ Check your installed version
All known vulnerabilities
from 0, < 0.6.0
>= 0.0.0-0, < 0.6.0
MEDIUM5.5CVE-2024-34353matrix-sdk-crypto contains a log exposure of private key of the server-side key backup >= 0.7.0, < 0.7.1
MEDIUM4.9CVE-2025-48937matrix-sdk-crypto vulnerable to encrypted event sender spoofing by homeserver administrator >= 0.8.0, < 0.11.1
MEDIUM4.9matrix-sdk-crypto vulnerable to encrypted event sender spoofing by homeserver administrator
>= 0.8.0, < 0.11.1
MEDIUM4.8`UserIdentity::is_verified` not checking verification status of own user identity while performing the check
from 0, < 0.7.2
MEDIUM4.8`UserIdentity::is_verified` not checking verification status of own user identity while performing the check
>= 0.0.0-0, < 0.7.2
MEDIUM4.3Missing facility to signal rotation of a verified cryptographic identity
from 0, < 0.8.0
MEDIUM4.3Missing facility to signal rotation of a verified cryptographic identity
>= 0.0.0-0, < 0.8.0
—Sender-binding gaps in to-device messages
>= 0.12.0, < 0.16.1
—Sender-binding gaps in to-device messages
>= 0.12.0, < 0.16.1