CVE-2024-50702: Teampass

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

TeamPass before 3.1.3.1 does not properly check whether a mail_me (aka action_mail) operation is on behalf of an administrator or manager.

Affected products

  • Teampass Teampass: before 3.1.3.1 (fixed in 3.1.3.1)

Published 2024-12-30. Last modified 2026-06-17.