Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Rolfzur

#48010of 53,632
5.3Total CVSS
Vulnerabilities · 1
PT-2022-21156
5.3
2022-09-23
Unknown · Rocket.Chat · CVE-2022-32217
**Name of the Vulnerable Software and Affected Versions** Rocket.Chat versions prior to 4.6.4 **Description** A cleartext storage of sensitive information exists due to an Oauth token being leaked in plaintext in Rocket.Chat logs. **Recommendations** For versions prior to 4.6.4, update to version 4.6.4 or later to resolve the issue. As a temporary workaround, consider restricting access to the Rocket.Chat logs to minimize the risk of exploitation.