CVE-2024-1402 Information
Feb 12, 2024
cve
Description
Mattermost fails to check if a custom emoji reaction exists when sending it to a post and to limit the amount of custom emojis allowed to be added in a post allowing an attacker sending a huge amount of non-existent custom emojis in a post to crash the mobile app of a user seeing the post.
Reference
https://mattermost.com/security-updates
Share on: