mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-30 10:10:35 +00:00
19 lines
936 B
Markdown
19 lines
936 B
Markdown
### [CVE-2024-1402](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-1402)
|
||

|
||

|
||

|
||
|
||
### Description
|
||
|
||
Mattermost fails to check if a custom emoji reaction exists when sending it to a post and to limit the amount of custom emojis allowed to be added in a post, allowing an attacker sending a huge amount of non-existent custom emojis in a post to crash the mobile app of a user seeing the post and to crash the server due to overloading when clients attempt to retrive the aforementioned post.
|
||
|
||
### POC
|
||
|
||
#### Reference
|
||
No PoCs from references.
|
||
|
||
#### Github
|
||
- https://github.com/c0rydoras/cves
|
||
- https://github.com/fkie-cad/nvd-json-data-feeds
|
||
|