An issue was discovered in Croc through 9.6.5. When a custom shared secret is used, the sender and receiver may divulge parts of this secret to an untrusted Relay, as part of composing a room name.
{ "versions": [ { "introduced": "0" }, { "last_affected": "9.6.5" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-43617.json"