Mattermost WelcomeBot plugin fails to to validate the membership status when inviting or adding users to channels allowing guest accounts to be added or invited to channels by default.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44262 | Mattermost WelcomeBot plugin fails to to validate the membership status when inviting or adding users to channels allowing guest accounts to be added or invited to channels by default. |
Fixes
Solution
Update Mattermost to versions 7.8.6, 7.10.3 or higher. Alternatively, update the WelcomeBot plugin to version 1.3.0 or higher.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
History
Mon, 21 Oct 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-10-21T19:39:44.854Z
Reserved: 2023-07-11T08:28:36.132Z
Link: CVE-2023-3613
Updated: 2024-08-02T07:01:56.920Z
Status : Modified
Published: 2023-07-17T16:15:11.107
Modified: 2024-11-21T08:17:40.277
Link: CVE-2023-3613
No data.
OpenCVE Enrichment
No data.
EUVD