CVE-2023-6727 Information
Dec 14, 2023
cve
Description
Mattermost fails to perform correct authorization checks when creating a playbook action allowing users without access to the playbook to create playbook actions. If the playbook action created is to post a message in a channel based on specific keywords in a post some playbook information like the name can be leaked.
Reference
https://mattermost.com/security-updates
Share on: