Launch Week Day 1: Announcing Security Design Review
LOW 3.1 Go

Mattermost Server Resource Exhaustion

GHSA-qqc8-rv37-79q5 · BIT-mattermost-2024-28053 · CVE-2024-28053 · GO-2024-3334

Published · Modified

Description

Resource Exhaustion in Mattermost Server versions 8.1.x before 8.1.10 fails to limit the size of the payload that can be read and parsed allowing an attacker to send a very large email payload and crash the server.

Ready to move

Start Securing

Free, no credit card | First findings in minutes