NA

CVE-2023-5160

Published: 02/10/2023 Updated: 04/10/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Mattermost fails to check the Show Full Name option at the /api/v4/teams/TEAM_ID/top/team_members endpoint allowing a member to get the full name of another user even if the Show Full Name option was disabled

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mattermost mattermost