Количество 3
Количество 3
CVE-2025-1792
Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11.12 fail to properly enforce access controls for guest users accessing channel member information, allowing authenticated guest users to view metadata about members of public channels via the channel members API endpoint.
CVE-2025-1792
Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11 ...
GHSA-hc6v-386m-93pq
Mattermost fails to properly enforce access controls for guest users
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-1792 Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11.12 fail to properly enforce access controls for guest users accessing channel member information, allowing authenticated guest users to view metadata about members of public channels via the channel members API endpoint. | CVSS3: 3.1 | 0% Низкий | 9 месяцев назад | |
CVE-2025-1792 Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11 ... | CVSS3: 3.1 | 0% Низкий | 9 месяцев назад | |
GHSA-hc6v-386m-93pq Mattermost fails to properly enforce access controls for guest users | CVSS3: 3.1 | 0% Низкий | 9 месяцев назад |
Уязвимостей на страницу