Junglewise Threat Intelligence

CVE-2024-40648: RUSTSEC-2024-0356 - `UserIdentity::is_verified` not checking verification status of own user identity while performing the check

CVE-2024-40648 · Severity: low · CVSS 3.1 · Published 2024-07-18

Technologies: matrix-sdk-crypto (crates.io). Vendors: crates.io.

Executive brief

`UserIdentity::is_verified` not checking verification status of own user identity while performing the check

Affected products

  • crates.io matrix-sdk-crypto

Related threats