Medium
CVSS 5.3
Overview
An information disclosure vulnerability in OnionShare 2.3 before 2.4 allows remote unauthenticated attackers to retrieve the full list of participants of a non-public OnionShare node via the --chat feature.
An information disclosure vulnerability in OnionShare 2.3 before 2.4 allows remo...
An information disclosure vulnerability in OnionShare 2.3 before 2.4 allows remote unauthenticated attackers to retrieve the full list of participants of a non-public OnionShare node via the --chat feature.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: