Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-2126 | matrix-appservice-irc is a Node.js IRC bridge for Matrix. The vulnerability in node-irc allows an attacker to manipulate a Matrix user into executing IRC commands by having them reply to a maliciously crafted message. The vulnerability has been patched in matrix-appservice-irc 0.33.2. Refrain from replying to messages from untrusted participants in IRC-bridged Matrix rooms. There are no known workarounds for this issue. |
Github GHSA |
GHSA-37hr-348p-rmf4 | Improper handling of multiline messages in node-irc affects matrix-appservice-irc |
Wed, 23 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-23T18:30:37.402Z
Reserved: 2022-04-13T00:00:00.000Z
Link: CVE-2022-29166
Updated: 2024-08-03T06:17:54.170Z
Status : Modified
Published: 2022-05-05T23:15:09.023
Modified: 2024-11-21T06:58:37.420
Link: CVE-2022-29166
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA