A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenticated NoSQL injection, resulting potentially in RCE.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.923
EPSS Ranking 99.7%