CVE-2023-27266

CVE-2023-27266

Mattermost fails to honor the ShowEmailAddress setting when constructing a response to the /api/v4/users/me/teams API endpoint, allowing an attacker with team admin privileges to learn the team owner’s email address in the response.

Source: CVE-2023-27266

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다