Security Advisory

CVE-2023-2787

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-06-16 08:55:39
Last updated 2024-12-06 23:03:17
Assigner Mattermost
CVSS score 6.5
State PUBLISHED

Description

Mattermost fails to check channel membership when accessing message threads, allowing an attacker to access arbitrary posts by using the message threads API.