Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-97wm-858v-4f4q

Опубликовано: 09 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Mattermost fails to properly check the creator of an attached file when adding the file to a draft post, potentially exposing unauthorized file information.

Mattermost fails to properly check the creator of an attached file when adding the file to a draft post, potentially exposing unauthorized file information.

EPSS

Процентиль: 38%
0.00167
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 4.3
nvd
больше 2 лет назад

Mattermost fails to properly check the creator of an attached file when adding the file to a draft post, potentially exposing unauthorized file information.

CVSS3: 4.3
debian
больше 2 лет назад

Mattermost fails to properly check the creator of an attached file whe ...

EPSS

Процентиль: 38%
0.00167
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862