We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
Assigner | Mattermost |
Reserved | 2023-10-02 |
Published | 2023-10-09 |
Updated | 2024-09-05 |
Mattermost fails to deduplicate input IDs allowing a simple user to cause the application to consume excessive resources and possibly crash by sending a specially crafted request to /api/v4/users/ids with multiple identical IDs.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L |
CWE-400 Uncontrolled Resource Consumption
vultza (vultza)
https://mattermost.com/security-updates