CVE-2023-48369

MEDIUM5.3EPSS 0.08%

Mattermost Uncontrolled Resource Consumption vulnerability

Published: 11/27/2023Modified: 2/4/2026
Also known as:GHSA-3487-3j7c-7gwjCGA-3h8f-5cr2-6g44

Description

Mattermost fails to limit the log size of server logs allowing an attacker sending specially crafted requests to different endpoints to potentially overflow the log.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

References (3)