Mattermost fails to redact from audit logsĀ the user password during user creation and the user password hash in other operations if the experimental audit logging configuration was enabled (ExperimentalAuditSettings section in config).
References
Link | Resource |
---|---|
https://mattermost.com/security-updates/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Mattermost
Published: 2023-04-17T14:21:13.233Z
Updated: 2023-04-17T14:52:11.171Z
Reserved: 2023-04-04T12:11:43.194Z
Link: CVE-2023-1831
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-04-17T15:15:06.923
Modified: 2023-04-26T20:32:58.273
Link: CVE-2023-1831
JSON object: View
Redhat Information
No data.