CVE-2024-50702: Teampass
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
TeamPass before 3.1.3.1 does not properly check whether a mail_me (aka action_mail) operation is on behalf of an administrator or manager.
Affected products
- Teampass Teampass: before 3.1.3.1 (fixed in 3.1.3.1)
Published 2024-12-30. Last modified 2026-06-17.