Description
Mattermost fails to properly check the creator of an attached file when adding the file to a draft post, potentially exposing unauthorized file information.
No analysis available yet.
Remediation
Vendor Solution
Update Mattermost Server to versions 7.8.11, 8.0.3, 8.1.2 or higher.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-57648 | Mattermost fails to properly check the creator of an attached file when adding the file to a draft post, potentially exposing unauthorized file information. |
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
History
No history.
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-09-05T19:47:23.046Z
Reserved: 2023-10-02T11:06:18.494Z
Link: CVE-2023-5331
Updated: 2024-08-02T07:52:08.561Z
Status : Modified
Published: 2023-10-09T11:15:11.280
Modified: 2024-11-21T08:41:32.870
Link: CVE-2023-5331
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD