Mattermost fails to properly check a... CVE-2023-47168

- AV AC AU C I A
发布: 2023-11-27
修订: 2023-12-01

Mattermost fails to properly check a redirect URL parameter allowing for an open redirect was possible when the user clicked "Back to Mattermost" after providing a invalid custom url scheme in /oauth/{service}/mobile_login?redirect_to=

0%
暂无可用Exp或PoC
当前有2条受影响产品信息