An issue was discovered in Mattermost Server before 5.14.0, 5.13.3, 5.12.6, and 5.9.4. It allows remote attackers to cause a denial of service (application hang) via a crafted SVG document.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mattermost_server | Mattermost | * | 5.9.4 (excluding) |
Mattermost_server | Mattermost | 5.12.0 (including) | 5.12.6 (excluding) |
Mattermost_server | Mattermost | 5.13.0 (including) | 5.13.3 (excluding) |
Mattermost_server | Mattermost | 5.14.0-rc1 (including) | 5.14.0-rc1 (including) |
Mattermost_server | Mattermost | 5.14.0-rc2 (including) | 5.14.0-rc2 (including) |
Mattermost_server | Mattermost | 5.14.0-rc3 (including) | 5.14.0-rc3 (including) |
Mattermost_server | Mattermost | 5.14.0-rc4 (including) | 5.14.0-rc4 (including) |
Mattermost_server | Mattermost | 5.14.0-rc5 (including) | 5.14.0-rc5 (including) |