Site icon API Security Blog

GHSA-QJRX-J8WM-XF83 Mattermost Confluence Plugin has Missing Authorization vulnerability

image
Mattermost Confluence Plugin versions < 1.5.0 fail to check the access of the user to the channel which allows attackers to create channel subscription without proper access to the channel via API call to the create channel subscription…Read More

Exit mobile version