Tenable Research Release Highlights

Forum Discussion

ibelyna's avatar
4 years ago

Deprecation of Slack RCE Plugin 140214 Summary On 02 DEC...

Deprecation of Slack RCE Plugin 140214

Summary

On 02 DEC 2021, Slack posted an update on a remote code execution (RCE) vulnerability attesting that the issue had been remediated in both the web and desktop versions of Slack. They stated, “Though it is not necessary to upgrade client versions to remediate this vulnerability, we do recommend that customers upgrade their Desktop client to at least version 4.4 in order to receive the benefits of the defense-in-depth work we have completed.”

Impact

As a result of this updated vendor advisory, as of THU 20 JAN 2022 we will be deprecating our Slack remote code execution (RCE) Plugin 140214.

Target Release Date

20 JAN 2022

No RepliesBe the first to reply