Описание
Mattermost Apps Framework fails to verify that a secret provided in the incoming webhook request allowing an attacker to modify the contents of the post sent by the Apps.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
mattermost-server | itp | package |
Связанные уязвимости
CVSS3: 4.3
nvd
около 2 лет назад
Mattermost Apps Framework fails to verify that a secret provided in the incoming webhook request allowing an attacker to modify the contents of the post sent by the Apps.
CVSS3: 4.3
github
около 2 лет назад
Mattermost Server Missing Authorization vulnerability