Description
A denial-of-service vulnerability in the Mattermost allows an authenticated user to crash the server via multiple requests to one of the API endpoints which could fetch a large amount of data.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Update Mattermost to version v7.4.0 or higher.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7432 | A denial-of-service vulnerability in the Mattermost allows an authenticated user to crash the server via multiple requests to one of the API endpoints which could fetch a large amount of data. |
Github GHSA |
GHSA-v42f-hq78-8c5m | Denial of service in Mattermost |
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates/ |
|
History
Fri, 06 Dec 2024 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-12-06T23:07:12.139Z
Reserved: 2022-11-17T05:22:41.207Z
Link: CVE-2022-4045
Updated: 2024-08-03T01:27:54.347Z
Status : Modified
Published: 2022-11-23T07:15:10.043
Modified: 2024-11-21T07:34:30.237
Link: CVE-2022-4045
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA