Security Advisory

CVE-2023-7114

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-29 12:46:22
Last updated 2024-09-09 17:28:54
Assigner Mattermost
State PUBLISHED

Description

Mattermost version 2.10.0 and earlier fails to sanitize deeplink paths, which allows an attacker to perform CSRF attacks against the server.