CVE-2021-37866

4.7MEDIUM

Mattermost Boards plugin v0.10.0 and earlier fails to invalidate a session on the server-side when a user logged out of Boards, which allows an attacker to reuse old session token for authorization.

发布于: 1/18/2022更新于: 11/21/2024

描述

Mattermost Boards plugin v0.10.0 and earlier fails to invalidate a session on the server-side when a user logged out of Boards, which allows an attacker to reuse old session token for authorization.

AI分析AI驱动

受影响产品

mattermostmattermost_boards

参考资料