cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-3613,https://securityvulnerability.io/vulnerability/CVE-2023-3613,Guest accounts invited and added to channels by Welcomebot plugin,"Mattermost WelcomeBot plugin fails to to validate the membership status when inviting or adding users to channels allowing guest accounts to be added or invited to channels by default. ",Mattermost,Mattermost Plugins,3.5,LOW,0.0005300000193528831,false,false,false,false,,false,false,2023-07-17T16:15:00.000Z,0 CVE-2023-2797,https://securityvulnerability.io/vulnerability/CVE-2023-2797,Path traversal in GitHub plugin's code preview feature,"Mattermost fails to sanitize code permalinks, allowing an attacker to preview code from private repositories by posting a specially crafted permalink on a channel. ",Mattermost,Mattermost Github Plugin,6.5,MEDIUM,0.0006099999882280827,false,false,false,false,,false,false,2023-06-16T10:15:00.000Z,0 CVE-2019-20864,https://securityvulnerability.io/vulnerability/CVE-2019-20864,,An issue was discovered in Mattermost Plugins before 5.13.0. The GitHub plugin allows an attacker to attach his Mattermost account to a different person's GitHub account.,Mattermost,Mattermost Plugins,7.5,HIGH,0.0008399999933317304,false,false,false,false,,false,false,2020-06-19T14:19:22.000Z,0