ZeroHour

CVE-2025-20072

CVSS 3.1
7.5 high
EPSS
<1%p43
Published
()
Modified
Description

Mattermost Mobile versions <= 2.22.0 fail to properly validate the style of proto supplied to an action's style in post.props.attachments, which allows an attacker to crash the mobile via crafted malicious input.

Vendors
mattermost
Products
mattermost mobile
Weakness
CWE-704
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.