CVE-2023-2808

CVSS V2 None CVSS V3 None
Description
Mattermost fails to normalize UTF confusable characters when determining if a preview should be generated for a hyperlink, allowing an attacker to trigger link preview on a disallowed domain using a specially crafted link.
Overview
  • CVE ID
  • CVE-2023-2808
  • Assigner
  • Mattermost
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-05-29T09:07:34.768Z
  • Last Modified Date
  • 2023-05-29T09:07:34.768Z
References
Reference URL Reference Tags
https://mattermost.com/security-updates/
History
Created Old Value New Value Data Type Notes
2024-06-24 22:15:57 Added to TrackCVE