Total vulnerabilities in the database
An issue was discovered in Mattermost Server before 5.10.0, 5.9.1, 5.8.2, and 4.10.9. A non-member could change the Update/Patch Channel endpoint for a private channel.
Software | From | Fixed in |
---|---|---|
mattermost / mattermost_server | 5.7.0 | 5.7.3 |
mattermost / mattermost_server | - | 4.10.9 |
mattermost / mattermost_server | 5.8.0 | 5.8.2 |
mattermost / mattermost_server | 5.9.0 | 5.9.1 |
mattermost / mattermost_server | 5.10.0-rc1 | 5.10.0-rc1.x |
mattermost / mattermost_server | 5.10.0-rc2 | 5.10.0-rc2.x |
mattermost / mattermost_server | 5.10.0-rc3 | 5.10.0-rc3.x |
mattermost / mattermost_server | 5.10.0-rc4 | 5.10.0-rc4.x |
mattermost / mattermost_server | 5.10.0-rc5 | 5.10.0-rc5.x |
mattermost / mattermost_server | 5.10.0-rc6 | 5.10.0-rc6.x |