Miggo Logo

CVE-2024-1949: Mattermost race condition

2.6

CVSS Score
3.1

Basic Information

EPSS Score
0.36424%
Published
2/29/2024
Updated
12/13/2024
KEV Status
No
Technology
TechnologyGo

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
github.com/mattermost/mattermost/server/v8go>= 9.0.0, < 9.4.29.4.2
github.com/mattermost/mattermost/server/v8go< 8.1.98.1.9

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

* r*** *on*ition in M*tt*rmost v*rsions *.*.x ***or* *.*.*, *n* *.*.x ***or* *.*.* *llows *n *ut**nti**t** *tt**k*r to **in un*ut*oriz** ****ss to in*ivi*u*l posts' *ont*nts vi* **r**ully tim** post *r**tion w*il* *not**r us*r **l*t*s posts.

Reasoning

No *n*lysis *v*il**l*