Логотип exploitDog
bind:CVE-2025-1792
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-1792

Количество 3

Количество 3

nvd логотип

CVE-2025-1792

9 месяцев назад

Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11.12 fail to properly enforce access controls for guest users accessing channel member information, allowing authenticated guest users to view metadata about members of public channels via the channel members API endpoint.

CVSS3: 3.1
EPSS: Низкий
debian логотип

CVE-2025-1792

9 месяцев назад

Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11 ...

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-hc6v-386m-93pq

9 месяцев назад

Mattermost fails to properly enforce access controls for guest users

CVSS3: 3.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-1792

Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11.12 fail to properly enforce access controls for guest users accessing channel member information, allowing authenticated guest users to view metadata about members of public channels via the channel members API endpoint.

CVSS3: 3.1
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-1792

Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11 ...

CVSS3: 3.1
0%
Низкий
9 месяцев назад
github логотип
GHSA-hc6v-386m-93pq

Mattermost fails to properly enforce access controls for guest users

CVSS3: 3.1
0%
Низкий
9 месяцев назад

Уязвимостей на страницу