NA

CVE-2023-49874

Published: 12/12/2023 Updated: 14/12/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Mattermost fails to check whether a user is a guest when updating the tasks of a private playbook run allowing a guest to update the tasks of a private playbook run if they know the run ID.

Vulnerable Product Search on Vulmon Subscribe to Product

mattermost mattermost server