An issue was discovered in Mattermost Desktop App before 4.4.0. The Same Origin Policy is mishandled during access-control decisions for web APIs, aka MMSA-2020-0006.
The product does not properly verify that the source of data or communication is valid.
Link | Tags |
---|---|
https://mattermost.com/security-updates/ | vendor advisory |