CVE-2023-48732

Publication date

2024-01-02 09:52:01

Family

Mattermost

State

PUBLISHED

Description

Mattermost fails to scope the WebSocket response around notified users to a each user separately resulting in the WebSocket broadcasting the information about who was notified about a post to everyone else in the channel.