CVE-2023-5159
3.8LOWMattermost fails to properly verify the permissions when managing/updating a bot allowing a User Manager role with user edit permissions to manage/update bots.
Published: 9/29/2023Updated: 11/21/2024
Description
Mattermost fails to properly verify the permissions when managing/updating a bot allowing a User Manager role with user edit permissions to manage/update bots.
AI AnalysisPowered by AI
Affected Products
mattermostmattermost
mattermostmattermost
References
- https://mattermost.com/security-updatesVendor Advisory
- https://mattermost.com/security-updatesVendor Advisory