CVE-2024-10241
EUVD-2024-297029.10.2024, 08:15
Mattermost versions 9.5.x <= 9.5.9 fail to properly filter the channel data when ElasticSearch is enabled which allows a user to get private channel names by using cmd+K/ctrl+K.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mattermost | mattermost_server | 9.5.0 ≤ 𝑥 < 9.5.10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References