CVE-2023-46701

CVSS V2 None CVSS V3 None
Description
Mattermost fails to perform authorization checks in the /plugins/playbooks/api/v0/runs/add-to-timeline-dialog endpoint of the Playbooks plugin allowing an attacker to get limited information about a post if they know the post ID
Overview
  • CVE ID
  • CVE-2023-46701
  • Assigner
  • Mattermost
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-12-12T08:19:22.274Z
  • Last Modified Date
  • 2023-12-12T08:19:22.274Z
References
Reference URL Reference Tags
https://mattermost.com/security-updates
History
Created Old Value New Value Data Type Notes
2024-06-24 22:56:16 Added to TrackCVE