Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Kyriakos Ziakoulis

#41242of 53,633
6.5Total CVSS
Vulnerabilities · 1
PT-2023-17235
6.5
2023-03-31
Unknown · Mattermost · CVE-2023-1775
**Name of the Vulnerable Software and Affected Versions** Mattermost (affected versions not specified) **Description** When running in a High Availability configuration, Mattermost fails to sanitize some of the `user updated` and `post deleted` events broadcast to all users, leading to disclosure of sensitive information to some of the users with currently connected Websocket clients. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.