Site icon API Security Blog

Mattermost Confluence Plugin is Missing Authentication for Critical Function

image
Mattermost Confluence Plugin versions < 1.5.0 fail to enforce user authentication of the Mattermost instance, allowing unauthenticated attackers to edit channel subscriptions via API call to the edit channel subscription…Read More

Exit mobile version