VYPR
Medium severity4.3NVD Advisory· Published Apr 15, 2021· Updated Jun 17, 2026

CVE-2021-29433

CVE-2021-29433

Description

Sydent is a reference Matrix identity server. In Sydent versions 2.2.0 and prior, sissing input validation of some parameters on the endpoints used to confirm third-party identifiers could cause excessive use of disk space and memory leading to resource exhaustion. A patch for the vulnerability is in version 2.3.0. No workarounds are known to exist.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
matrix-sydentPyPI
< 2.3.02.3.0

Affected products

3
  • Matrix Org/Sydent2 versions
    cpe:2.3:a:matrix:sydent:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:matrix:sydent:*:*:*:*:*:*:*:*range: <2.3.0
    • (no CPE)range: <= 2.2.0
  • ghsa-coords
    Range: < 2.3.0

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.