creation_timestamp| type| source ---|---|--- 2025-08-12 00:38:16+00:00| seen|...Read More ...
Continue ReadingAugust 12, 2025
Mattermost Confluence Plugin versions < 1.5.0 fail to enforce authentication of the user to the Mattermost instance, which allows unauthenticated attackers to access subscription details via an ...
Continue ReadingAugust 12, 2025
Mattermost Confluence Plugin versions < 1.5.0 fail to check user access to the channel, which allows attackers to get channel subscription details without proper access to the channel via an AP ...
Continue ReadingAugust 12, 2025
Mattermost Confluence Plugin versions < 1.5.0 fail to check the access of the user to the channel which allows attackers to create channel subscription without proper access to the channel via ...
Continue ReadingAugust 12, 2025
Mattermost Confluence Plugin versions < 1.5.0 fail to check user access to the channel, allowing attackers to create a channel subscription without proper access to the channel via an API call ...
Continue ReadingAugust 12, 2025
Mattermost Confluence Plugin version <1.5.0 fails to check the authorization of the user to the Mattermost instance which allows attackers to create a channel subscription without proper author ...
Continue ReadingAugust 12, 2025
Summary Logic error in 2FA verification condition allows bypass of two-factor authentication Details https://github.com/komari-monitor/komari/blob/bd5a6934e1b79a12cf1e6a9bba5372d0e04f3abc/api/login.go ...
Continue ReadingAugust 12, 2025
Summary WebSocket upgrader has disabled origin checking, enabling Cross-Site WebSocket Hijacking (CSWSH) attacks against authenticated users Details https://github.com/komari-monitor/komari/blob/bd5a6 ...
Continue ReadingAugust 12, 2025
Back to Main