Mattermost fails to restrict a user with permissions to edit other users and to create personal access tokens from elevating their privileges to system admin
2023-05-12T09:15:10.373
2024-11-21T07:58:45.357
Modified
CVSSv3.1: 4.7 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mattermost | mattermost_server | < 7.1.8 | Yes |
Application | mattermost | mattermost_server | < 7.7.4 | Yes |
Application | mattermost | mattermost_server | < 7.8.3 | Yes |
Application | mattermost | mattermost_server | < 7.9.2 | Yes |