Back to Feed
VulnerabilitiesMar 30, 2026

Storm Brews Over Critical, No-Click Telegram Flaw

Critical 9.8 CVSS Telegram vulnerability allegedly exploitable via corrupted sticker; vendor denies existence.

Summary

Security researchers have disclosed a critical vulnerability in Telegram with a CVSS score of 9.8 that allegedly allows no-click exploitation through a malformed sticker file. Telegram has publicly denied the vulnerability exists, creating a dispute over the severity and validity of the claim. The disagreement between researchers and the vendor leaves the threat landscape unclear pending independent verification.