In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade github.com/mattermost/mattermost/server/channels/api4 to version 10.5.13, 10.11.5, 10.12.2, 11.0.3 or higher.
Affected versions of this package are vulnerable to Information Exposure via the GET /api/v4/channels/{channel_id}/common_teams endpoint. An attacker can access team email addresses intended to be visible only to Team Admins by making authenticated requests to this endpoint.