Total vulnerabilities in the database
Mattermost fails to enforce character limits in all possible notification props allowing an attacker to send a really long value for a notification_prop resulting in the server consuming an abnormal quantity of computing resources and possibly becoming temporarily unavailable for its users.
Software | From | Fixed in |
---|---|---|
![]() |
8.1.0 | 8.1.0.x |
![]() |
8.1.0 | 8.1.1 |
![]() |
8.0.0 | 8.0.2 |
![]() |
- | 7.8.10 |
mattermost / mattermost | 7.0.0 | 7.8.10 |
mattermost / mattermost | 8.1.0 | 8.1.1 |
mattermost / mattermost | 8.0.0 | 8.0.2 |