Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 Go

Mattermost Server is vulnerable to a Denial of Service attack through `invite_people` command

GHSA-5mh6-p63g-3mv5 · CVE-2018-21258 · GO-2025-4146

Published · Modified

Description

An issue was discovered in Mattermost Server before 5.1.0. It allows attackers to cause a denial of service via the invite_people slash command.

Ready to move

Start Securing

Free, no credit card | First findings in minutes