Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-27266

Mattermost fails to honor the ShowEmailAddress setting when constructing a response to the /api/v4/users/me/teams API endpoint, allowing an attacker with team admin privileges to learn the team owner's email address in the response.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.8%
CVSS Severity
CVSS v3 Score 2.7
Products affected by CVE-2023-27266


Contact Us

Shodan ® - All rights reserved