Mattermost fails to properly check a redirect URL parameter allowing for anĀ open redirect was possible when the user clicked "Back to Mattermost" after providing a invalid custom url scheme in /oauth/{service}/mobilelogin?redirectto=
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "7.8.12"
},
{
"introduced": "8.0.0"
},
{
"last_affected": "8.1.3"
},
{
"introduced": "9.0.0"
},
{
"last_affected": "9.0.1"
},
{
"introduced": "0"
},
{
"last_affected": "9.1.0"
}
]
}