Medium severity4.3NVD Advisory· Published Aug 30, 2021· Updated Jun 17, 2026
CVE-2021-32832
CVE-2021-32832
Description
Rocket.Chat is an open-source fully customizable communications platform developed in JavaScript. In Rocket.Chat before versions 3.11.3, 3.12.2, and 3.13 an issue with certain regular expressions could lead potentially to Denial of Service. This was fixed in versions 3.11.3, 3.12.2, and 3.13.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:rocket.chat:rocket.chat:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:rocket.chat:rocket.chat:*:*:*:*:*:*:*:*range: <3.11.3
- (no CPE)range: <3.11.3, <3.12.2, <3.13
- (no CPE)range: < 3.11.3
Patches
Vulnerability mechanics
References
4- github.com/RocketChat/Rocket.Chat/commit/4a0dce973e37ec3f56ca2231d6030511dbdd094cnvdPatchThird Party Advisory
- securitylab.github.com/advisories/GHSL-2020-310-redos-Rocket.Chat/nvdExploitThird Party Advisory
- docs.rocket.chat/guides/security/security-updatesnvdVendor Advisory
- github.com/RocketChat/Rocket.Chat/releases/tag/3.11.3nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.