Security Advisory

CVE-2023-2193

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-20 08:17:04
Last updated 2024-12-06 23:04:57
Assigner Mattermost
State PUBLISHED

Description

Mattermost fails to invalidate existing authorization codes when deauthorizing an OAuth2 app, allowing an attacker possessing an authorization code to generate an access token.