VYPR
Unrated severityNVD Advisory· Published Apr 17, 2023· Updated Dec 6, 2024

User password logged in audit logs

CVE-2023-1831

Description

Mattermost fails to redact from audit logs the user password during user creation and the user password hash in other operations if the experimental audit logging configuration was enabled (ExperimentalAuditSettings section in config).

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.