Mobile app freezes when receiving a post with hundreds of emojis
Vulnerability Description
Mattermost Mobile fails to limit the maximum number of Markdown elements in a post allowing an attacker to send a post with hundreds of emojis to a channel and freeze the mobile app of users when viewing that particular channel.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-5522
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Šimon Čecháček
References
More from Mattermost
View All →Affected Vendor
Mattermost
View all reports →