Описание
Mattermost Lack of Access Control Validation
Mattermost versions 10.5.x <= 10.5.8 fail to validate access controls at time of access which allows user to read a thread via AI posts
Пакеты
Наименование
github.com/mattermost/mattermost-server
go
Затронутые версииВерсия исправления
>= 10.5.0, <= 10.5.8
10.5.9
Наименование
github.com/mattermost/mattermost/server/v8
go
Затронутые версииВерсия исправления
< 8.0.0-20250721095846-c602a4a78e1f
8.0.0-20250721095846-c602a4a78e1f
Связанные уязвимости
CVSS3: 3.5
nvd
6 месяцев назад
Mattermost versions 10.5.x <= 10.5.8 fail to validate access controls at time of access which allows user to read a thread via AI posts
CVSS3: 3.5
debian
6 месяцев назад
Mattermost versions 10.5.x <= 10.5.8 fail to validate access controls ...