CVE-2023-48732

CVSS V2 None CVSS V3 None
Description
Mattermost fails to scope the WebSocket response around notified users to a each user separately resulting in the WebSocket broadcasting the information about who was notified about a post to everyone else in the channel.
Overview
  • CVE ID
  • CVE-2023-48732
  • Assigner
  • Mattermost
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-01-02T09:52:01.147Z
  • Last Modified Date
  • 2024-01-02T09:52:01.147Z
References
Reference URL Reference Tags
https://mattermost.com/security-updates
History
Created Old Value New Value Data Type Notes
2024-06-25 00:20:47 Added to TrackCVE