14 Total advisories
14 Vulnerabilities
0 Malware
Dependency scanning
Check whether matrix-sydent is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
CRITICAL 9.3
CVE-2023-38686
Sydent does not verify email server certificates
HIGH 7.5
CVE-2021-29430
Sydent vulnerable to denial of service attack via memory exhaustion
MEDIUM 5.3
CVE-2021-29432
Malicious users could abuse Sydent to control the content of invitation emails
MEDIUM 4.3
CVE-2021-29433
Sydent DoS (via resource exhaustion) due to improper input validation
HIGH 7.7
CVE-2021-29431
SSRF in Sydent due to missing validation of hostnames
HIGH 7.5
CVE-2019-11842
matrix-sydent and matrix-synapse Use Cryptographically Weak PRNG
HIGH 7.5
CVE-2019-11842
matrix-sydent and matrix-synapse Use Cryptographically Weak PRNG
MEDIUM 5.9
CVE-2019-11340
Matrix Sydent mishandles emails
MEDIUM 5.9
CVE-2019-11340
Matrix Sydent mishandles emails
MEDIUM 5.3
CVE-2023-38686
CVE-2023-38686
UNKNOWN
CVE-2021-29433
CVE-2021-29433
UNKNOWN
CVE-2021-29432
CVE-2021-29432
UNKNOWN
CVE-2021-29431
CVE-2021-29431
UNKNOWN
CVE-2021-29430
CVE-2021-29430
Browse more PyPI advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes