Vulnerability Details CVE-2019-14367
Slack-Chat through 1.5.5 leaks a Slack Access Token in source code. An attacker can obtain a lot of information about the victim's Slack (channels, members, etc.).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.4%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2019-14367
-
cpe:2.3:a:slack-chat_project:slack-chat:-
-
cpe:2.3:a:slack-chat_project:slack-chat:1.5.5