Medium severity5.3NVD Advisory· Published Sep 27, 2022· Updated Jun 17, 2026
CVE-2022-39835
CVE-2022-39835
Description
An issue was discovered in Gajim through 1.4.7. The vulnerability allows attackers, via crafted XML stanzas, to correct messages that were not sent by them. The attacker needs to be part of the group chat or single chat. The fixed version is 1.5.0.
Affected products
4Patches
Vulnerability mechanics
References
2- dev.gajim.org/gajim/gajim/-/blob/master/ChangeLognvdRelease NotesVendor Advisory
- dev.gajim.org/gajim/gajim/-/tagsnvdVendor Advisory
News mentions
0No linked articles in our index yet.