Mattermost fails to check whether the “Allow users to view archived channels” setting is enabled during permalink previews display, allowing members to view permalink previews of archived channels even if the “Allow users to view archived channels” setting is disabled.
References
Link | Resource |
---|---|
https://mattermost.com/security-updates | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-11-27 10:15
Updated : 2023-12-01 21:18
NVD link : CVE-2023-43754
Mitre link : CVE-2023-43754
CVE.ORG link : CVE-2023-43754
JSON object : View
Products Affected
mattermost
- mattermost
CWE