Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j3wj-gffr-9v8h

Опубликовано: 27 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

A missing permissions check in the /plugins/playbooks/api/v0/runs API in Mattermost allows an attacker to list and view playbooks belonging to a team they are not a member of.

A missing permissions check in the /plugins/playbooks/api/v0/runs API in Mattermost allows an attacker to list and view playbooks belonging to a team they are not a member of.

EPSS

Процентиль: 32%
0.00119
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 4.3
nvd
больше 2 лет назад

A missing permissions check in the /plugins/playbooks/api/v0/runs API in Mattermost allows an attacker to list and view playbooks belonging to a team they are not a member of.

CVSS3: 4.3
debian
больше 2 лет назад

A missing permissions check in the /plugins/playbooks/api/v0/runs API ...

EPSS

Процентиль: 32%
0.00119
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-862