Vulnerabilities > Mattermost > Playbooks > 1.13.0

DATE CVE VULNERABILITY TITLE RISK
2022-05-03 CVE-2022-1548 Unspecified vulnerability in Mattermost Playbooks
Mattermost Playbooks plugin 1.25 and earlier fails to properly restrict user-level permissions, which allows playbook members to escalate their membership privileges and perform actions restricted to playbook admins.
network
low complexity
mattermost
8.8
2022-04-13 CVE-2022-1333 Allocation of Resources Without Limits or Throttling vulnerability in Mattermost Playbooks
Mattermost Playbooks plugin v1.24.0 and earlier fails to properly check the limit on the number of webhooks, which allows authenticated and authorized users to create a specifically drafted Playbook which could trigger a large amount of webhook requests leading to Denial of Service.
network
low complexity
mattermost CWE-770
4.0