Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Subhasis Datta

#31257of 53,633
8.2Total CVSS
Vulnerabilities · 1
PT-2023-25374
8.2
2023-07-17
Unknown · Mattermost · CVE-2023-3591
**Name of the Vulnerable Software and Affected Versions** Mattermost (affected versions not specified) **Description** The issue is related to Mattermost failing to invalidate previously generated password reset tokens when a new reset token is created. This allows potentially unauthorized access through unused but still valid tokens. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.