← Back to CVE List

CVE-2023-47168

Published: 2023-11-27T10:15Z
Last Modified: 2024-11-21T08:29Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Mattermost fails to properly check a redirect URL parameter allowing for an open redirect was possible when the user clicked "Back to Mattermost" after providing a invalid custom url scheme in /oauth/{service}/mobile_login?redirect_to= > MITRE Terms of Use apply – see LICENSE‑MITRE.txt