py-matrix-synapse -- multiple vulnerabilities

Affected packages
py36-matrix-synapse < 1.15.2
py37-matrix-synapse < 1.15.2
py38-matrix-synapse < 1.15.2


VuXML ID d9f686f3-fde0-48dc-ab0a-01c2fe3e0529
Discovery 2020-07-02
Entry 2020-07-03

Matrix developers report:

Due to the two security issues highlighted below, server administrators are encouraged to update Synapse. We are not aware of these vulnerabilities being exploited in the wild.