VYPR
Low severity3.3NVD Advisory· Published Oct 4, 2021· Updated Jun 17, 2026

CVE-2021-41861

CVE-2021-41861

Description

The Telegram application 7.5.0 through 7.8.0 for Android does not properly implement image self-destruction, a different vulnerability than CVE-2019-16248. After approximately two to four uses of the self-destruct feature, there is a misleading UI indication that an image was deleted (on both the sender and recipient sides). The images are still present in the /Storage/Emulated/0/Telegram/Telegram Image/ directory.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Telegramdesktop/Telegramllm-create2 versions
    7.5.0-7.8.0+ 1 more
    • (no CPE)range: 7.5.0-7.8.0
    • cpe:2.3:a:telegram:telegram:*:*:*:*:*:android:*:*range: >=7.5.0,<=7.8.0
  • Telegram/Telegram applicationdescription

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.