cbcvebase.
CVE-2023-3613
published 2023-07-17

CVE-2023-3613: Mattermost WelcomeBot plugin fails to to validate the membership status when inviting or adding users to channels allowing guest accounts to be added or…

low3.5CVSS 3.1
AVNACLPRLUIRSUCNILAN
Mattermost WelcomeBot plugin fails to to validate the membership status when inviting or adding users to channels allowing guest accounts to be added or invited to channels by default.

Affected

3 ranges
VendorProductVersion rangeFixed in
mattermostmattermost_plugins<= 7.8.5
mattermostmattermost_server< 7.8.67.8.6
mattermostmattermost_server>= 7.9.0 < 7.10.37.10.3