cve/2023/CVE-2023-1774.md
2024-06-18 02:51:15 +02:00

692 B

CVE-2023-1774

Description

When processing an email invite to a private channel on a team, Mattermost fails to validate the inviter's permission to that channel, allowing an attacker to invite themselves to a private channel.

POC

Reference

Github

No PoCs found on GitHub currently.