github.com/mattermost/.../mattermost-server vulnerabilities

  • licenses detected

    • >=v0.0.0-20171201172605-739d91f21387 <v3.0.2-0.20160517145249-50454bc81e3c+incompatible; >=v3.0.2+incompatible
    • >=v3.0.2-0.20160517145249-50454bc81e3c+incompatible <v3.0.2+incompatible
  • Direct Vulnerabilities

    Known vulnerabilities in the github.com/mattermost/mattermost-server package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Improper Access Control

    <8.1.11>=9.0.0 <9.3.3>=9.4.0 <9.4.4>=9.5.0 <9.5.2
    • M
    Uncontrolled Resource Consumption ('Resource Exhaustion')

    <8.1.9>=9.0.0 <9.2.5>=9.3.0 <9.3.1>=9.4.0 <9.4.2
    • L
    Exposure of Sensitive Information to an Unauthorized Actor

    <8.1.9>=9.0.0 <9.4.0
    • L
    Exposure of Sensitive Information to an Unauthorized Actor

    <8.1.9>=9.0.0 <9.4.2
    • M
    Improper Access Control

    <8.1.9>=9.0.0 <9.2.5>=9.3.0 <9.3.1>=9.4.0 <9.4.2
    • M
    Exposure of Sensitive Information to an Unauthorized Actor

    <8.1.9>=9.0.0 <9.2.5>=9.3.0 <9.3.1>=9.4.0 <9.4.2
    • M
    Uncontrolled Resource Consumption ('Resource Exhaustion')

    <8.1.9>=9.0.0 <9.2.5>=9.3.0 <9.3.1
    • L
    Improper Access Control

    <8.1.9>=9.0.0 <9.4.2
    • M
    Improper Access Control

    <8.1.9>=9.0.0 <9.2.5>=9.3.0 <9.3.1
    • M
    Improper Access Control

    <8.1.9>=9.0.0 <9.2.5>=9.3.0 <9.3.1
    • L
    Incorrect Authorization

    <9.1.0-rc1
    • M
    Missing Authorization

    <7.8.8>=7.9.0 <7.9.6>=7.10.0 <7.10.4
    • L
    Access Restriction Bypass

    <7.10.3
    • M
    Denial of Service (DoS)

    <7.8.7>=7.9.0 <7.9.5>=7.10.0 <7.10.3
    • M
    Improper Preservation of Permissions

    <7.8.7>=7.9.0 <7.9.5>=7.10.0 <7.10.3
    • L
    Improper Authorization

    <7.8.7>=7.9.0 <7.10.3
    • M
    Denial of Service (DoS)

    <7.8.7>=7.9.0 <7.9.5>=7.10.0 <7.10.3
    • M
    Denial of Service (DoS)

    <7.8.7>=7.9.0 <7.9.5>=7.10.0 <7.10.3
    • M
    Information Exposure

    <7.1.8>=7.2.0 <7.7.4>=7.8.0 <7.8.3>=7.9.0 <7.9.2
    • M
    Missing Authorization

    >=3.3.0 <7.1.6>=7.2.0 <7.7.2
    • M
    Cross-site Scripting (XSS)

    <7.1.6>=7.2.0 <7.7.2>=7.8.0 <7.8.0
    • M
    Information Exposure

    <6.3.9>=6.4.0 <6.5.2>=6.6.0 <6.6.2>=6.7.0 <6.7.1
    • M
    Denial of Service (DoS)

    <6.3.9>=6.4.0 <6.5.2>=6.6.0 <6.6.2
    • M
    Information Exposure

    <6.3.9>=6.4.0 <6.5.2>=6.6.0 <6.6.2>=6.7.0 <6.7.1
    • M
    Denial of Service (DoS)

    >=5.0.0 <6.3.8>=6.4.0 <6.4.3>=6.5.0 <6.5.1>=6.6.0 <6.6.1
    • M
    Denial of Service (DoS)

    <6.5.0
    • H
    Denial of Service (DoS)

    <5.37.8>=6.0.0 <6.1.3>=6.2.0 <6.2.3>=6.3.0 <6.3.3
    • M
    Denial of Service (DoS)

    <5.37.8>=6.0.0 <6.1.3>=6.2.0 <6.2.3>=6.3.0 <6.3.3