Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-104480— Improper MLS Welcome roster validation in Discord libdave allows unauthorized group membership

Quick assessment

Affected
Discord libdave
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在 Discord 的 libdave 库中,版本低于 1.2.0 的软件在处理 MLS Welcome 消息时,未对最终群组目录列表中包含无法识别的参与者这一情况进行拒绝。如果攻击者控制了 DAVE 信令路径(例如语音网关,或具备类似权限的其他位置,能够向客户端添加、修改或屏蔽信令消息),则可能使受影响的客户端接受一个未经授权的成员加入端到端加密的媒体会话,从而破坏音频和视频的机密性与完整性。

CVSS 9.4 · Critical EPSS 0.40% · P32

Affected Version Matrix 2

VendorProduct Version RangeStatus
Discord libdave 1.1.0< 1.2.0 affected
7b15f1fc16f159da0478aa6be909e38f1e957833< 9686fbaea864aa19f0675e486672b6a77811b6a1 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-104480

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Improper MLS Welcome roster validation in Discord libdave allows unauthorized group membership
Source: CVE Program / CVE List V5
Vulnerability Description
Discord libdave before 1.2.0 did not reject an MLS Welcome message when the resulting group roster contained an unrecognized participant. An attacker in control of the DAVE signaling path (the voice gateway, or an equivalent position able to add, alter, or withhold signaling messages to a client) could cause affected clients to accept an unauthorized member into the end-to-end encrypted media session, compromising the confidentiality and integrity of audio and video.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N
Source: CVE Program / CVE List V5
Vulnerability Type
未有动作错误条件的检测
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Discord libdave 1.1.0 ~ 1.2.0 -

II. Public POCs for CVE-2026-104480

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-104480

请登录查看更多情报信息。

Patches & Fixes for CVE-2026-104480 (1)

Vendor Pages for CVE-2026-104480 (2)

IV. Related Vulnerabilities

V. Comments for CVE-2026-104480

No comments yet


Leave a comment