Security Advisory

CVE-2024-39837

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-08-01 14:05:06
Last updated 2024-08-01 20:47:51
Assigner Mattermost
CVSS score 3.8
State PUBLISHED

Description

Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6 fail to properly restrict channel creation which allows a malicious remote to create arbitrary channels, when shared channels were enabled.