Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Jo Astoreca

#22619of 56,330
11.7Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2023-27774
4.5
2023-08-11
Unknown · Mattermost · CVE-2023-4108
**Name of the Vulnerable Software and Affected Versions** Mattermost (affected versions not specified) **Description** The issue is related to Mattermost's failure to sanitize post metadata during audit logging, resulting in the contents of permalinks being logged. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2023-17267
7.2
2023-04-17
Unknown · Mattermost · CVE-2023-1831
**Name of the Vulnerable Software and Affected Versions** Mattermost (affected versions not specified) **Description** The issue concerns the failure to redact sensitive information from audit logs. Specifically, it affects the user password during user creation and the user password hash in other operations. This occurs when the experimental audit logging configuration is enabled, as defined in the ExperimentalAuditSettings section of the configuration. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.