Security Advisory

CVE-2024-32945

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-07-15 08:42:19
Last updated 2024-08-02 02:27:52
Assigner Mattermost
State PUBLISHED

Description

Mattermost Mobile Apps versions <=2.16.0 fail to protect against abuse of a globally shared MathJax state which allows an attacker to change the contents of a LateX post, by creating another post with specific macro definitions.