Security Advisory
CVE-2017-18909
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
An issue was discovered in Mattermost Server before 3.9.0 when SAML is used. Encryption and signature verification are not mandatory.