Security Advisory
CVE-2023-3581
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Mattermost fails to properly validate the origin of a websocket connection allowing a MITM attacker on Mattermost to access the websocket APIs.