CVE-2021-37860
22.09.2021, 17:15
Mattermost 5.38 and earlier fails to sufficiently sanitize clipboard contents, which allows a user-assisted attacker to inject arbitrary web script in product deployments that explicitly disable the default CSP.
Vendor | Product | Version |
---|---|---|
mattermost | mattermost | 𝑥 ≤ 5.38 |
𝑥
= Vulnerable software versions