Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f77j-wjfq-qgmp

Опубликовано: 16 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Mattermost versions 10.11.x <= 10.11.10 Fail to invalidate cached permalink preview data when a user loses channel access which allows the user to continue viewing private channel content via previously cached permalink previews until cache reset or relogin.. Mattermost Advisory ID: MMSA-2026-00580

Mattermost versions 10.11.x <= 10.11.10 Fail to invalidate cached permalink preview data when a user loses channel access which allows the user to continue viewing private channel content via previously cached permalink previews until cache reset or relogin.. Mattermost Advisory ID: MMSA-2026-00580

EPSS

Процентиль: 21%
0.00067
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-672

Связанные уязвимости

CVSS3: 4.3
nvd
21 день назад

Mattermost versions 10.11.x <= 10.11.10 Fail to invalidate cached permalink preview data when a user loses channel access which allows the user to continue viewing private channel content via previously cached permalink previews until cache reset or relogin.. Mattermost Advisory ID: MMSA-2026-00580

CVSS3: 4.3
debian
21 день назад

Mattermost versions 10.11.x <= 10.11.10 Fail to invalidate cached perm ...

EPSS

Процентиль: 21%
0.00067
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-672