CVE-2024-24776
EUVD-2024-071009.02.2024, 15:15
Mattermost fails to check the required permissions in the POST /api/v4/channels/stats/member_count API resulting in channel member counts being leaked to a user without permissions.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mattermost | mattermost_server | 𝑥 ≤ 8.1.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration