Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5gq6-83ww-xr95

Опубликовано: 12 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Mattermost fails to check whether a user is a guest when updating the tasks of a private playbook run allowing a guest to update the tasks of a private playbook run if they know the run ID.

Mattermost fails to check whether a user is a guest when updating the tasks of a private playbook run allowing a guest to update the tasks of a private playbook run if they know the run ID.

EPSS

Процентиль: 30%
0.0011
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 4.3
nvd
около 2 лет назад

Mattermost fails to check whether a user is a guest when updating the tasks of a private playbook run allowing a guest to update the tasks of a private playbook run if they know the run ID.

CVSS3: 4.3
debian
около 2 лет назад

Mattermost fails to check whether a user is a guest when updating the ...

EPSS

Процентиль: 30%
0.0011
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-284