← volver
CVE-2023-49607mediumCWE-754

Playbook plugin crash via missing interface type assertion

13Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 4.3epss 0.6%
probabilidad de explotación
0.6%top 50% de las CVE
explotación observada
noninguna fuente lo reporta
Mattermost fails to validate the type of the "reminder" body request parameter allowing an attacker to crash the Playbook Plugin when updating the status dialog.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Productos afectados
Mattermost · Mattermost