Unknown · Matrix-Appservice-Irc · CVE-2024-52505
**Name of the Vulnerable Software and Affected Versions**
matrix-appservice-irc versions 3.0.2 and earlier
**Description**
The provisioning API of the matrix-appservice-irc bridge contains a vulnerability that can lead to arbitrary IRC command execution as the bridge IRC bot. This issue is related to improper input terminator handling in the Provisioning API. The vulnerability poses a risk of potential remote code execution.
**Recommendations**
For matrix-appservice-irc versions 3.0.2 and earlier, upgrade to version 3.0.3 to patch the vulnerability.