Mattermost iOS app fails to properly validate the server certificate while initializing the TLS connection allowing a network attacker to intercept the WebSockets connection.
Solution:
The product does not validate, or incorrectly validates, a certificate.
Link | Tags |
---|---|
https://mattermost.com/security-updates | vendor advisory |