ZeroHour

CVE-2017-18920

CVSS 3.1
9.8 critical
EPSS
1%p67
Published
()
Modified
Description

An issue was discovered in Mattermost Server before 3.6.2. The WebSocket feature does not follow the Same Origin Policy.

Vendors
mattermost
Products
mattermost server
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.