Matrix-js-sdk has insufficient MXC URI validation which could allow client-side path traversal. (CVE-2024-50336)
{ "section": "core" }