Vulnerability Details CVE-2023-2797
Mattermost fails to sanitize code permalinks, allowing an attacker to preview code from private repositories by posting a specially crafted permalink on a channel.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 38.5%
CVSS Severity
CVSS v3 Score 3.1
Products affected by CVE-2023-2797
-
cpe:2.3:a:mattermost:mattermost:*
-
cpe:2.3:a:mattermost:mattermost:7.10.0