Описание
Mattermost fails to properly validate the "Show Full Name" option in a few endpoints in Mattermost Boards, allowing a member to get the full name of another user even if the Show Full Name option was disabled.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип | 
|---|---|---|---|---|
| mattermost-server | itp | package | 
EPSS
Процентиль: 57%
0.00352
Низкий
Связанные уязвимости
CVSS3: 4.3
nvd
почти 2 года назад
Mattermost fails to properly validate the "Show Full Name" option in a few endpoints in Mattermost Boards, allowing a member to get the full name of another user even if the Show Full Name option was disabled.
CVSS3: 4.3
github
почти 2 года назад
Mattermost Exposure of Sensitive Information to an Unauthorized Actor vulnerability
EPSS
Процентиль: 57%
0.00352
Низкий