Description
Mattermost fails to handle a null request body in the /add endpoint, allowing a simple member to send a request with null request body to that endpoint and make it crash. After a few repetitions, the plugin is disabled.
No analysis available yet.
Remediation
Vendor Solution
Update Mattermost Server to versions 8.1.6, 9.2.0 or higher
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-53718 | Mattermost fails to handle a null request body in the /add endpoint, allowing a simple member to send a request with null request body to that endpoint and make it crash. After a few repetitions, the plugin is disabled. |
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
History
No history.
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-08-02T22:01:26.051Z
Reserved: 2023-12-05T08:04:35.026Z
Link: CVE-2023-49809
No data.
Status : Modified
Published: 2023-12-12T09:15:09.110
Modified: 2024-11-21T08:33:53.100
Link: CVE-2023-49809
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD