CVE-2023-5160

CVSS V2 None CVSS V3 None
Description
Mattermost fails to check the Show Full Name option at the /api/v4/teams/TEAM_ID/top/team_members endpoint allowing a member to get the full name of another user even if the Show Full Name option was disabled
Overview
  • CVE ID
  • CVE-2023-5160
  • Assigner
  • Mattermost
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-10-02T10:46:33.153Z
  • Last Modified Date
  • 2023-10-02T10:46:33.153Z
References
Reference URL Reference Tags
https://mattermost.com/security-updates
History
Created Old Value New Value Data Type Notes
2024-06-25 04:44:21 Added to TrackCVE