CVE-2023-43754
EUVD-2023-299127.11.2023, 10:15
Mattermost fails to check whether the “Allow users to view archived channels” setting is enabled during permalink previews display, allowing members to view permalink previews of archived channels even if the “Allow users to view archived channels” setting is disabled.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mattermost | mattermost | 𝑥 ≤ 7.8.12 |
| mattermost | mattermost | 8.0.0 ≤ 𝑥 ≤ 8.1.3 |
| mattermost | mattermost | 9.0.0 ≤ 𝑥 ≤ 9.0.1 |
| mattermost | mattermost | 9.1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration