Vulnerabilities > Mattermost > Playbooks
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-05-03 | CVE-2022-1548 | Unspecified vulnerability in Mattermost Playbooks Mattermost Playbooks plugin 1.25 and earlier fails to properly restrict user-level permissions, which allows playbook members to escalate their membership privileges and perform actions restricted to playbook admins. | 8.8 |
2022-04-13 | CVE-2022-1333 | Allocation of Resources Without Limits or Throttling vulnerability in Mattermost Playbooks Mattermost Playbooks plugin v1.24.0 and earlier fails to properly check the limit on the number of webhooks, which allows authenticated and authorized users to create a specifically drafted Playbook which could trigger a large amount of webhook requests leading to Denial of Service. | 6.5 |