Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w6f5-pv84-q7wv

Опубликовано: 16 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 3.1

Описание

Mattermost fails to sanitize code permalinks, allowing an attacker to preview code from private repositories by posting a specially crafted permalink on a channel.

Mattermost fails to sanitize code permalinks, allowing an attacker to preview code from private repositories by posting a specially crafted permalink on a channel.

EPSS

Процентиль: 63%
0.00467
Низкий

3.1 Low

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 3.1
nvd
около 2 лет назад

Mattermost fails to sanitize code permalinks, allowing an attacker to preview code from private repositories by posting a specially crafted permalink on a channel.

CVSS3: 3.1
debian
около 2 лет назад

Mattermost fails to sanitize code permalinks, allowing an attacker to ...

EPSS

Процентиль: 63%
0.00467
Низкий

3.1 Low

CVSS3

Дефекты

CWE-74