Total vulnerabilities in the database
Mattermost fails to properly check permissions when retrieving a post allowing for a System Role with the permission to manage channels to read the posts of a DM conversation.
Software | From | Fixed in |
---|---|---|
![]() |
8.1.0 | 8.1.0.x |
![]() |
8.1.0 | 8.1.1 |
![]() |
8.0.0 | 8.0.2 |
![]() |
- | 7.8.10 |
mattermost / mattermost | 7.0.0 | 7.8.10 |
mattermost / mattermost | 8.1.0 | 8.1.1 |
mattermost / mattermost | 8.0.0 | 8.0.2 |