Mattermost versions 9.6.0, 9.5.x... CVE-2024-4182

- AV AC AU C I A
发布: 2024-04-26
修订: 2024-04-26

Mattermost versions 9.6.0, 9.5.x before 9.5.3, 9.4.x before 9.4.5, and 8.1.x before 8.1.12 fail to handle JSON parsing errors in custom status values, which allows an authenticated attacker to crash other users' web clients via a malformed custom status.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息