Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-7g2v-2frm-rg94: Mattermost Incorrect Authorization vulnerability

Mattermost fails to restrict a user with permissions to edit other users and to create personal access tokens from elevating their privileges to system admin

ghsa
#vulnerability#git#auth

Mattermost Incorrect Authorization vulnerability

Moderate severity GitHub Reviewed Published May 12, 2023 to the GitHub Advisory Database • Updated May 12, 2023

ghsa: Latest News

GHSA-vfpf-xmwh-8m65: ProsemirrorToHtml has a Cross-Site Scripting (XSS) vulnerability through unescaped HTML attribute values