VYPR
Low severity2.7NVD Advisory· Published Apr 15, 2021· Updated Jun 17, 2026

CVE-2021-30487

CVE-2021-30487

Description

In the topic moving API in Zulip Server 3.x before 3.4, organization administrators were able to move messages to streams in other organizations hosted by the same Zulip installation.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:zulip:zulip_server:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:zulip:zulip_server:*:*:*:*:*:*:*:*range: >=3.0,<3.4
    • (no CPE)range: <3.4
  • Zulip/Zulip Serverdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.