Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 384 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2024-36250 MFA Code Replay MattermostMattermost Low 3.1 2024-11-09 17:18:35 Deep Dive
CVE-2024-42000 Unauthorized Access to view channels' details MattermostMattermost Low 2.7 2024-11-09 17:17:25 Deep Dive
CVE-2024-46872 Client-Side Path Traversal Leading to CSRF in Playbooks MattermostMattermost Medium 4.6 2024-10-29 08:12:13 Deep Dive
CVE-2024-47401 DoS via Amplified GraphQL Response in Playbooks MattermostMattermost Medium 4.3 2024-10-29 08:11:18 Deep Dive
CVE-2024-50052 Arbitrary post deletion via Playbooks /ignore-thread endpoint MattermostMattermost Medium 4.3 2024-10-29 08:10:17 Deep Dive
CVE-2024-10241 Private channel names leaked with Ctrl+K when ElasticSearch is enabled MattermostMattermost Medium 4.3 2024-10-29 08:08:21 Deep Dive
CVE-2024-10214 Incorrect Session Creation with Desktop SSO MattermostMattermost Low 3.5 2024-10-28 14:12:37 Deep Dive
CVE-2024-9155 Insufficient Authorization On Unlinked Channel Files MattermostMattermost Medium 4.3 2024-09-26 14:57:44 Deep Dive
CVE-2024-47003 DoS via non-string message using permalink embed MattermostMattermost Low 3.1 2024-09-26 08:05:16 Deep Dive
CVE-2024-42406 Unauthorized access on archived channels MattermostMattermost Medium 5.4 2024-09-26 08:04:23 Deep Dive
CVE-2024-45843 Weak SSRF Filtering MattermostMattermost Low 3.1 2024-09-26 08:03:42 Deep Dive
CVE-2024-47145 Unauthorized access on archived channels via file links MattermostMattermost Low 3.1 2024-09-26 08:01:48 Deep Dive
CVE-2024-45835 Insufficient Electron Fuses Configuration MattermostMattermost Low 2.5 2024-09-16 14:27:48 Deep Dive
CVE-2024-39772 Silent Desktop Screenshot Capture MattermostMattermost Low 3.7 2024-09-16 14:27:47 Deep Dive
CVE-2024-45833 Mobile password gets saved in dictionary under conditions MattermostMattermost Medium 4.5 2024-09-16 06:41:47 Deep Dive
CVE-2024-39613 RCE in desktop app in Windows by local attacker MattermostMattermost Medium 5.3 2024-09-16 06:40:59 Deep Dive
CVE-2024-43105 Excessive Resource Consumption via `/export` MattermostMattermost Medium 4.3 2024-08-23 07:25:00 Deep Dive
CVE-2024-43780 Unauthorized channel file upload MattermostMattermost Medium 4.3 2024-08-22 15:17:12 Deep Dive
CVE-2024-40884 Unauthorized disabling of invite URL MattermostMattermost Low 2.7 2024-08-22 15:17:11 Deep Dive
CVE-2024-42497 Insufficient permissions checks on teams MattermostMattermost Medium 6.0 2024-08-22 15:17:11 Deep Dive