Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Jo Astoreca

#20908de 53,638
12CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2023-27774
4.5
2023-08-11
Unknown · Mattermost · CVE-2023-4108
**Name of the Vulnerable Software and Affected Versions** Mattermost (affected versions not specified) **Description** The issue is related to Mattermost's failure to sanitize post metadata during audit logging, resulting in the contents of permalinks being logged. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2023-17267
7.5
2023-04-17
Unknown · Mattermost · CVE-2023-1831
**Name of the Vulnerable Software and Affected Versions** Mattermost (affected versions not specified) **Description** The issue concerns the failure to redact sensitive information from audit logs. Specifically, it affects the user password during user creation and the user password hash in other operations. This occurs when the experimental audit logging configuration is enabled, as defined in the ExperimentalAuditSettings section of the configuration. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.