CVE-2021-41867
An information disclosure vulnerability in OnionShare 2.3 before 2.4 allows remote unauthenticated attackers to retrieve the full list of participants of a non-public OnionShare node via the --chat feature.
- Affected products
- Onionshare
- Onionshare
- < 2.4
- Fix
- Available
- CVSS 3.1
- 5.3 MEDIUM
- EPSS
- 1.8% (76th percentile)
- NVD status
- Modified
- Published
- 2021-10-04
CVE-2021-41867 at NVD
No indexed exploits for CVE-2021-41867 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2021-41867 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.