cve/2023/CVE-2023-47858.md
2024-05-25 21:48:12 +02:00

759 B

CVE-2023-47858

Description

Mattermost fails to properly verify the permissions needed for viewing archived public channels,  allowing a member of one team to get details about the archived public channels of another team via the GET /api/v4/teams//channels/deleted endpoint.

POC

Reference

No PoCs from references.

Github