ZeroHour

CVE-2023-7113

CVSS 3.1
6.1 medium
EPSS
<1%p22
Published
()
Modified
Description

Mattermost version 8.1.6 and earlier fails to sanitize channel mention data in posts, which allows an attacker to inject markup in the web client.

Vendors
mattermost
Products
mattermost server
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.