Описание
Mattermost fails to properly check a redirect URL parameter allowing for an open redirect was possible when the user clicked "Back to Mattermost" after providing a invalid custom url scheme in /oauth/{service}/mobile_login?redirect_to=
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
mattermost-server | itp | package |
EPSS
Процентиль: 36%
0.00146
Низкий
Связанные уязвимости
CVSS3: 4.3
nvd
больше 1 года назад
Mattermost fails to properly check a redirect URL parameter allowing for an open redirect was possible when the user clicked "Back to Mattermost" after providing a invalid custom url scheme in /oauth/{service}/mobile_login?redirect_to=
EPSS
Процентиль: 36%
0.00146
Низкий