CVE-2024-50052
29.10.2024, 08:15
Mattermost versions 9.10.x <= 9.10.2, 9.11.x <= 9.11.1, 9.5.x <= 9.5.9 fail tocheck that the origin of the message in an integration action matches with the original post metadatawhich allows an authenticated user to delete an arbitrary post.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration
References