Home
MEDIUM: 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NDefault status
unaffected
Any version
affected
Any version
affected
Any version
affected
7.8.11
unaffected
8.0.3
unaffected
8.1.2
unaffected
Description
Mattermost fails to properly check the creator of an attached file when adding the file to a draft post, potentially exposing unauthorized file information.
Problem types
Product status
Any version
Any version
Any version
7.8.11
8.0.3
8.1.2
Credits
vultza (vultza)
References
mattermost.com/security-updates
mattermost.com/security-updates