CVE-2023-45223
27.11.2023, 10:15
Mattermost fails to properly validate the "Show Full Name" option in a few endpoints in Mattermost Boards, allowing a member to get the full name of another user even if the Show Full Name option was disabled.Enginsight
Vendor | Product | Version |
---|---|---|
mattermost | mattermost | 𝑥 ≤ 7.8.12 |
mattermost | mattermost | 8.0.0 ≤ 𝑥 ≤ 8.1.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration