cve/2023/CVE-2023-5160.md
2024-05-25 21:48:12 +02:00

749 B

CVE-2023-5160

Description

Mattermost fails to check the Show Full Name option at the /api/v4/teams/TEAM_ID/top/team_members endpoint allowing a member to get the full name of another user even if the Show Full Name option was disabled

POC

Reference

No PoCs from references.

Github