An issue was discovered in Mattermost Server before 4.10.1, 4.9.4, and 4.8.2. It allows attackers to cause a denial of service (application hang) via a malformed link in a channel.
{
"cpe": "cpe:2.3:a:mattermost:mattermost_server:*:*:*:*:*:*:*:*",
"source": "CPE_RANGE",
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "4.8.2"
},
{
"introduced": "4.9.0"
},
{
"fixed": "4.9.4"
},
{
"introduced": "4.10.0"
},
{
"fixed": "4.10.1"
}
]
}