Mattermost fails to honor the... CVE-2023-27265

- AV AC AU C I A
发布: 2023-02-27
修订: 2023-11-07

Mattermost fails to honor the ShowEmailAddress setting when constructing a response to the "Regenerate Invite Id" API endpoint, allowing an attacker with team admin privileges to learn the team owner's email address in the response.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息