Security Advisory

CVE-2024-24988

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-02-29 08:06:28
Last updated 2024-08-01 23:36:21
Assigner Mattermost
CVSS score 4.3
State PUBLISHED

Description

Mattermost fails to properly validate the length of the emoji value in the custom user status, allowing an attacker to send multiple times a very long string as an emoji value causing high resource consumption and possibly crashing the server.