CVE-2024-9155
CVSS V2 None
CVSS V3 None
Description
Mattermost versions 9.10.x <= 9.10.1, 9.9.x <= 9.9.2, 9.5.x <= 9.5.8 fail to limit access to channels files that have not been linked to a post which allows an attacker to view them in channels that they are a member of.
Overview
- CVE ID
- CVE-2024-9155
- Assigner
- Mattermost
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-09-26T14:57:43.987Z
- Last Modified Date
- 2024-09-26T15:17:25.819Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://mattermost.com/security-updates |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-9155 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-9155 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-10-06 14:03:53 | Added to TrackCVE |