VendorsMattermostmattermost_server9.6.0
Vulnerabilities

Mattermost Server 9.6.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2024-4198
Mattermost versions 9.6.0, 9.5.x before 9.5.3, and 8.1.x before 8.1.12 fail to fully validate role changes which allows an attacker authenticated as team admin to demote users to guest via crafted HTTP requests.
Published 2024-04-26 · Analyzed
2.7EPSS 0.005