Launchpad.net

CVE 2023-1777

Mattermost allows an attacker to request a preview of an existing message when creating a new message via the createPost API call, disclosing the contents of the linked message.

See the CVE page on Mitre.org for more details.

References