CVE-2023-2787
16.06.2023, 09:15
Mattermost fails to check channel membership when accessing message threads, allowing an attacker to access arbitrary posts by using the message threads API.Enginsight
Vendor | Product | Version |
---|---|---|
mattermost | mattermost | 7.1.0 ≤ 𝑥 ≤ 7.1.9 |
mattermost | mattermost | 7.8.0 ≤ 𝑥 ≤ 7.8.4 |
mattermost | mattermost | 7.9.0 ≤ 𝑥 ≤ 7.9.3 |
mattermost | mattermost | 7.10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration