The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM SGNL (aka Archive Signal) app users, which is different functionality than described in the TeleMessage "End-to-End encryption from the mobile phone through to the corporate archive" documentation, as exploited in the wild in May 2025.
2025-05-08T14:15:26.883
2025-11-05T19:26:39.130
Analyzed
CVSSv3.1: 1.9 (LOW)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | telemessage | text_message_archiver | ≤ 2025-05-05 | Yes |