Логотип exploitDog
bind:CVE-2025-53857
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-53857

Количество 2

Количество 2

nvd логотип

CVE-2025-53857

6 месяцев назад

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers to get channel subscription details without proper access to the channel via API call to the GET autocomplete/GetChannelSubscriptions endpoint.

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-42m6-5vm7-fjv2

6 месяцев назад

Mattermost Confluence Plugin has Missing Authorization vulnerability

CVSS3: 3.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-53857

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers to get channel subscription details without proper access to the channel via API call to the GET autocomplete/GetChannelSubscriptions endpoint.

CVSS3: 3.7
0%
Низкий
6 месяцев назад
github логотип
GHSA-42m6-5vm7-fjv2

Mattermost Confluence Plugin has Missing Authorization vulnerability

CVSS3: 3.7
0%
Низкий
6 месяцев назад

Уязвимостей на страницу