Launchpad.net

CVE 2017-18914

An issue was discovered in Mattermost Server before 3.8.2, 3.7.5, and 3.6.7. An external link can occur on an error page even if it is not on an allowlist.

See the CVE page on Mitre.org for more details.

References