Mattermost Jira Plugin fails to protect against logout CSRF allowing an attacker to post a specially crafted message that would disconnect a user's Jira connection in Mattermost only by viewing the message.
References
Link Resource
https://mattermost.com/security-updates Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Mattermost

Published: 2024-02-09T14:42:22.126Z

Updated: 2024-06-04T17:45:50.541Z

Reserved: 2024-01-30T10:23:06.712Z


Link: CVE-2024-23319

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2024-02-09T15:15:08.133

Modified: 2024-02-15T18:44:04.737


Link: CVE-2024-23319

JSON object: View

cve-icon Redhat Information

No data.

CWE