Description
Mattermost fails to properly validate a RegExp built off the server URL path, allowing an attacker in control of an enrolled server to mount a Denial Of Service.
Problem types
CWE-400 Uncontrolled Resource Consumption
Product status
Any version
5.5.1
Credits
DoyenSec
References
mattermost.com/security-updates