Mattermost fails to restrict a user with permissions to edit other users and to create personal access tokens from elevating their privileges to system admin
References
Link Resource
https://mattermost.com/security-updates Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Mattermost

Published: 2023-05-12T08:53:44.111Z

Updated: 2023-05-12T08:53:44.111Z

Reserved: 2023-05-04T11:36:47.883Z


Link: CVE-2023-2515

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-05-12T09:15:10.373

Modified: 2023-05-23T19:53:59.490


Link: CVE-2023-2515

JSON object: View

cve-icon Redhat Information

No data.

CWE