VulnerabilitiesMar 30, 2026
Storm Brews Over Critical, No-Click Telegram Flaw
Critical 9.8 CVSS Telegram vulnerability allegedly exploitable via corrupted sticker; vendor denies existence.
Summary
Security researchers have disclosed a critical vulnerability in Telegram with a CVSS score of 9.8 that allegedly allows no-click exploitation through a malformed sticker file. Telegram has publicly denied the vulnerability exists, creating a dispute over the severity and validity of the claim. The disagreement between researchers and the vendor leaves the threat landscape unclear pending independent verification.