CVE-2023-5196
29.09.2023, 10:15
Mattermost fails to enforce character limits in all possible notification props allowing an attacker tosend a really long value for a notification_prop resulting in the server consuming an abnormal quantity of computing resources and possibly becoming temporarily unavailable for its users.Enginsight
Vendor | Product | Version |
---|---|---|
mattermost | mattermost | 7.0.0 ≤ 𝑥 < 7.8.10 |
mattermost | mattermost | 8.0.0 ≤ 𝑥 < 8.0.2 |
mattermost | mattermost | 8.1.0 ≤ 𝑥 < 8.1.1 |
𝑥
= Vulnerable software versions