Mattermost fails to validate links on external websites when constructing a preview for a linked website, allowing an attacker to cause a denial-of-service by a linking to a specially crafted webpage in a message.
References
Link Resource
https://mattermost.com/security-updates/ Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Mattermost

Published: 2023-06-16T09:02:34.751Z

Updated: 2023-06-16T09:02:34.751Z

Reserved: 2023-05-18T12:17:17.551Z


Link: CVE-2023-2793

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-06-16T10:15:09.270

Modified: 2023-06-26T17:45:53.867


Link: CVE-2023-2793

JSON object: View

cve-icon Redhat Information

No data.

CWE