CVE-2021-37862

3.7LOW

Mattermost 6.0 and earlier fails to sufficiently validate the email address during registration, which allows attackers to trick users into signing up using attacker-controlled email addresses via cra

Published: 12/17/2021Updated: 11/21/2024

Description

Mattermost 6.0 and earlier fails to sufficiently validate the email address during registration, which allows attackers to trick users into signing up using attacker-controlled email addresses via crafted invitation token.

AI AnalysisPowered by AI

Affected Products

mattermostmattermost_server

References