Mattermost webapp fails to validate route parameters in/<TEAM_NAME>/channels/<CHANNEL_NAME> allowing an attacker to perform a client-side path traversal.
{ "nvd_published_at": "2023-12-06T09:15:08Z", "cwe_ids": [ "CWE-22", "CWE-74" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-12-08T21:57:03Z" }