Mattermost Confluence Plugin versions < 1.5.0 fail to enforce user authentication of the Mattermost instance, allowing unauthenticated attackers to edit channel subscriptions via API call to th ...
Continue ReadingAugust 12, 2025
Vulnerability description not...Read More ...
Continue ReadingAugust 12, 2025
Mattermost Confluence Plugin versions < 1.5.0 fail to check user access to the channel, allowing attackers to create a channel subscription without proper access to the channel via an API call ...
Continue ReadingAugust 12, 2025
Summary WebSocket upgrader has disabled origin checking, enabling Cross-Site WebSocket Hijacking (CSWSH) attacks against authenticated users Details https://github.com/komari-monitor/komari/blob/bd5a6 ...
Continue ReadingAugust 12, 2025
Summary Logic error in 2FA verification condition allows bypass of two-factor authentication Details https://github.com/komari-monitor/komari/blob/bd5a6934e1b79a12cf1e6a9bba5372d0e04f3abc/api/login.go ...
Continue ReadingAugust 12, 2025
creation_timestamp| type| source ---|---|--- 2025-08-12 02:52:31+00:00| seen|...Read More ...
Continue ReadingAugust 12, 2025
Vulnerability description not...Read More ...
Continue ReadingAugust 12, 2025
creation_timestamp| type| source ---|---|--- 2025-08-12 02:52:31+00:00| seen|...Read More ...
Continue ReadingAugust 12, 2025
Back to Main