Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-478w-7mxw-36gh

Опубликовано: 12 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Mattermost fails to handle a null request body in the /add endpoint, allowing a simple member to send a request with null request body to that endpoint and make it crash. After a few repetitions, the plugin is disabled. 

Mattermost fails to handle a null request body in the /add endpoint, allowing a simple member to send a request with null request body to that endpoint and make it crash. After a few repetitions, the plugin is disabled. 

EPSS

Процентиль: 33%
0.00129
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 4.3
nvd
около 2 лет назад

Mattermost fails to handle a null request body in the /add endpoint, allowing a simple member to send a request with null request body to that endpoint and make it crash. After a few repetitions, the plugin is disabled. 

CVSS3: 4.3
debian
около 2 лет назад

Mattermost fails to handle a null request body in the /add endpoint, a ...

EPSS

Процентиль: 33%
0.00129
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-400