Vulnerabilities (CVE)

Filtered by vendor Mattermost Subscribe
Filtered by product Mattermost Boards
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-37866 1 Mattermost 1 Mattermost Boards 2022-02-03 5.0 MEDIUM 7.5 HIGH
Mattermost Boards plugin v0.10.0 and earlier fails to invalidate a session on the server-side when a user logged out of Boards, which allows an attacker to reuse old session token for authorization.