These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2026-75575 Rocket.Chat sendForgotPasswordEmail unbounded reset mail. The vulnerability allows an unauthenticated caller to invoke the sendForgotPasswordEmail Meteor method without a DDP rate limit, potentially leading to an unbounded volume of reset mail at a chosen address and enabling address probing. Defenders responsible for Rocket.Chat deployments should assess exposure and prioritize verificatio [truncated]
CVE-2026-72919 is a medium-severity vulnerability in Rocket.Chat's channels.convertToTeam REST endpoint. This endpoint allows an authenticated user with create-team permission to convert an unrelated public channel by supplying channelName instead of channelId. The issue was fixed in multiple versions, including 7.10.14, 8.0.8, and 8.6.1. Affected Rocket.Chat deployments should verify exposure and update [truncated]
CVE-2026-72918 is a medium-severity vulnerability in Rocket.Chat, an open-source communications platform. Prior to versions 7.10.14, 8.0.8, 8.1.7, 8.2.7, 8.3.7, 8.4.5, 8.5.2, and 8.6.1, an authenticated user can write arbitrary notification bodies via the stream-notify-user WebSocket protocol stream because the sender is not checked. This issue allows a user to create a fake message in another user's open [truncated]
CVE-2026-55666 is a critical vulnerability in Rocket.Chat's Apple OAuth flow. Prior to versions 8.5.1, 8.4.4, 8.3.6, 8.2.6, 8.1.6, 8.0.7, and 7.10.13, Rocket.Chat's loginHandler.ts file improperly handles Apple-issued JWTs during the OAuth flow. If a JWT does not contain an email address, the application accepts an arbitrary email value supplied directly in the request. This allows attackers to forge Appl [truncated]