Vulnerabilities in element-hq
26 resultsVexday analysis
Element-HQ apresenta um perfil de risco moderado com 25 vulnerabilidades catalogadas, sendo apenas 1 crítica e nenhuma sob exploração ativa conhecida. A fraqueza dominante é validação inadequada de entrada (CWE-20), com 2 novas exposições nos últimos 90 dias, indicando um ritmo controlado de descobertas recentes.
CVE-2025-31126MEDIUMElement X iOS allows the entity in control of the well-known file to break the confidentiality of embedded Element CallEPSS 0.2%CVE-2025-31127MEDIUMElement X Android allows the entity in control of the well-known file to break the confidentiality embedded Element CallEPSS 0.2%CVE-2025-27606MEDIUMElement Android PIN autologout bypassEPSS 0.2%CVE-2025-32026LOWElement Web could load a malicious instance of Element Call leaking media encryption keysEPSS 0.2%CVE-2026-45078MEDIUMSynapse CPU starvation (Denial of Service)EPSS 0.1%CVE-2026-48007HIGHElement Call reports full URLs of visited pages to analytics serverEPSS —