DirectorySecurity Advisories
Sign In
Security Advisories

CGA-fr35-c86v-5rpx

Published

Last updated

https://images.chainguard.dev/security/CGA-fr35-c86v-5rpx
Package

mattermost-9

Latest Update
Not affected
Aliases
  • CVE-2024-1949
  • GHSA-3g35-v53r-gpxc

Severity

2.6

Low

CVSS V3

Summary

Mattermost race condition

Description

A race condition in Mattermost versions 8.1.x before 8.1.9, and 9.4.x before 9.4.2 allows an authenticated attacker to gain unauthorized access to individual posts' contents via carefully timed post creation while another user deletes posts.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images