Mattermost versions 9.7.x <= 9.7.5, 9.8.x <= 9.8.2 and 9.9.x <= 9.9.2 fail to properly propagate permission scheme updates across cluster nodes which allows a user to keep old permissions, even if the permission scheme has been updated.
{ "versions": [ { "introduced": "9.7.0" }, { "fixed": "9.7.6" }, { "introduced": "9.8.0" }, { "fixed": "9.8.3" }, { "introduced": "9.9.0" }, { "fixed": "9.9.3" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-12247.json"