Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-32945


Mattermost Mobile Apps versions <=2.16.0 fail to protect against abuse of a globally shared MathJax state which allows an attacker to change the contents of a LateX post, by creating another post with specific macro definitions.


Published

2024-07-15T09:15:02.260

Last Modified

2024-11-21T09:16:05.340

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 2.6 (LOW)

Weaknesses
  • Type: Secondary
    CWE-909
  • Type: Primary
    CWE-909

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application mattermost mattermost_mobile < 2.17.0 Yes

References