VYPR

Zulip Server

by Zulip

Source repositories

CVEs (44)

  • CVE-2020-15070HigAug 21, 2020
    risk 0.57cvss 8.8epss 0.01

    Zulip Server 2.x before 2.1.7 allows eval injection if a privileged attacker were able to write directly to the postgres database, and chose to write a crafted custom profile field value.

  • CVE-2019-18933CriNov 21, 2019
    risk 0.57cvss 9.8epss 0.01

    In Zulip Server versions from 1.7.0 to before 2.0.7, a bug in the new user signup process meant that users who registered their account using social authentication (e.g., GitHub or Google SSO) in an organization that also allows password authentication could have their personal…

  • CVE-2017-0910HigNov 27, 2017
    risk 0.57cvss 8.8epss 0.01

    In Zulip Server before 1.7.1, on a server with multiple realms, a vulnerability in the invitation system lets an authorized user of one realm on the server create a user account on any other realm.

  • CVE-2020-14215HigAug 21, 2020
    risk 0.49cvss 7.5epss 0.01

    Zulip Server before 2.1.5 has Incorrect Access Control because 0198_preregistrationuser_invited_as adds the administrator role to invitations.

  • CVE-2023-32678MedAug 25, 2023
    risk 0.42cvss 6.5epss 0.00

    Zulip is an open-source team collaboration tool with topic-based threading that combines email and chat. Users who used to be subscribed to a private stream and have been removed from it since retain the ability to edit messages/topics, move messages to other streams, and delete…

  • CVE-2017-0896MedJun 2, 2017
    risk 0.42cvss 6.5epss 0.01

    Zulip Server 1.5.1 and below suffer from an error in the implementation of the invite_by_admins_only setting in the Zulip group chat application server that allowed an authenticated user to invite other users to join a Zulip organization even if the organization was configured…

  • CVE-2020-12759MedAug 21, 2020
    risk 0.40cvss 6.1epss 0.01

    Zulip Server before 2.1.5 allows reflected XSS via the Dropbox webhook.

  • CVE-2020-9445MedApr 20, 2020
    risk 0.40cvss 6.1epss 0.01

    Zulip Server before 2.1.3 allows XSS via the modal_link feature in the Markdown functionality.

  • CVE-2020-9444MedApr 20, 2020
    risk 0.40cvss 6.1epss 0.01

    Zulip Server before 2.1.3 allows reverse tabnabbing via the Markdown functionality.

  • CVE-2018-9990MedApr 18, 2018
    risk 0.40cvss 6.1epss 0.01

    In Zulip Server versions before 1.7.2, there was an XSS issue with stream names in topic typeahead.

  • CVE-2018-9987MedApr 18, 2018
    risk 0.40cvss 6.1epss 0.01

    In Zulip Server versions 1.5.x, 1.6.x, and 1.7.x before 1.7.2, there was an XSS issue with muting notifications.

  • CVE-2018-9986MedApr 18, 2018
    risk 0.40cvss 6.1epss 0.01

    In Zulip Server versions before 1.7.2, there were XSS issues with the frontend markdown processor.

  • CVE-2026-40300MedMay 12, 2026
    risk 0.35cvss 6.5epss 0.00

    Zulip is an open-source team collaboration tool. Prior to 12.0, With message_edit_history_visibility_policy set to "moves", /api/v1/messages/{id}/history still returns historical content values, allowing low-privilege users to recover text that was edited away from other users'…

  • CVE-2021-30479MedApr 15, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the all_public_streams API feature resulted in guest users being able to receive message traffic to public streams that should have been only accessible to members of the organization.

  • CVE-2020-14194MedAug 21, 2020
    risk 0.35cvss 5.4epss 0.01

    Zulip Server before 2.1.5 allows reverse tabnapping via a topic header link.

  • CVE-2020-10935MedApr 20, 2020
    risk 0.35cvss 5.4epss 0.01

    Zulip Server before 2.1.3 allows XSS via a Markdown link, with resultant account takeover.

  • CVE-2019-16215MedSep 18, 2019
    risk 0.35cvss 6.5epss 0.01

    The Markdown parser in Zulip server before 2.0.5 used a regular expression vulnerable to exponential backtracking. A user who is logged into the server could send a crafted message causing the server to spend an effectively arbitrary amount of CPU time and stall the processing…

  • CVE-2018-9999MedApr 18, 2018
    risk 0.35cvss 5.4epss 0.01

    In Zulip Server versions before 1.7.2, there was an XSS issue with user uploads and the (default) LOCAL_UPLOADS_DIR storage backend.

  • CVE-2022-31134MedJul 12, 2022
    risk 0.32cvss 4.9epss 0.01

    Zulip is an open-source team collaboration tool. Zulip Server versions 2.1.0 above have a user interface tool, accessible only to server owners and server administrators, which provides a way to download a "public data" export. While this export is only accessible to…

  • CVE-2021-30478MedApr 15, 2021
    risk 0.28cvss 4.3epss 0.01

    An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the can_forge_sender permission (previously is_api_super_user) resulted in users with this permission being able to send messages appearing as if sent by a system bot, including to other…

Page 1 of 3