CVE-2023-7113

Publication date

2023-12-29 12:46:13

Family

Mattermost

State

PUBLISHED

Description

Mattermost version 8.1.6 and earlier fails to sanitize channel mention data in posts, which allows an attacker to inject markup in the web client.