CVE-2024-47003

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Sep 26, 2024
CWE ID 400

Summary

CVE-2024-47003 is a vulnerability affecting Mattermost versions 9.11.x up to 9.11.0 and 9.5.x up to 9.5.8. The issue lies in the failure of these versions to validate the message of a permalink post as a string. An attacker can exploit this flaw by sending a non-string value as the message of a permalink post, resulting in a frontend crash.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Mattermost Server

Affected Vendors

  • Mattermost, Inc.