Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8chw-qpp9-9385

Опубликовано: 05 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

Mattermost versions 9.7.x <= 9.7.5, 9.8.x <= 9.8.2 and 9.9.x <= 9.9.2 fail to properly propagate permission scheme updates across cluster nodes which allows a user to keep old permissions, even if the permission scheme has been updated.

Mattermost versions 9.7.x <= 9.7.5, 9.8.x <= 9.8.2 and 9.9.x <= 9.9.2 fail to properly propagate permission scheme updates across cluster nodes which allows a user to keep old permissions, even if the permission scheme has been updated.

EPSS

Процентиль: 24%
0.00082
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 4.6
nvd
около 1 года назад

Mattermost versions 9.7.x <= 9.7.5, 9.8.x <= 9.8.2 and 9.9.x <= 9.9.2 fail to properly propagate permission scheme updates across cluster nodes which allows a user to keep old permissions, even if the permission scheme has been updated.

CVSS3: 4.6
debian
около 1 года назад

Mattermost versions 9.7.x <= 9.7.5, 9.8.x <= 9.8.2 and 9.9.x <= 9.9.2 ...

EPSS

Процентиль: 24%
0.00082
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-863