github.com/mattermost/.../app vulnerabilities

Licenses: (AGPL-3.0 OR Apache-2.0) | (AGPL-3.0 OR Apache-2.0 OR MIT) | Unknown

License

>=v0.0.0-20171201172605-739d91f21387 <v2.0.1-0.20160503192700-5d7e34c94b56+incompatible;
>=v2.1.0+incompatible <v2.1.1-0.20160401180237-a51a8ebc264c+incompatible;
>=v2.2.0+incompatible <v3.0.2-0.20160517145249-50454bc81e3c+incompatible;
>=v0.0.0-20160503192700-5d7e34c94b56 <v0.0.0-20171201172605-739d91f21387;
>=v2.0.1-0.20160503192700-5d7e34c94b56+incompatible <v2.1.0+incompatible;
>=v2.1.1-0.20160401180237-a51a8ebc264c+incompatible <v2.2.0+incompatible;

Direct Vulnerabilities

Known vulnerabilities in the github.com/mattermost/mattermost-server/app package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Insertion of Sensitive Information Into Sent Data

>=10.11.0-rc1 <10.11.11>=11.2.0-rc1 <11.2.3>=11.3.0-rc1 <11.3.1
  • M
Incorrect Authorization

<7.8.10>=8.0.0 <8.0.2>=8.1.0 <8.1.1
  • M
Denial of Service (DoS)

<7.8.10>=8.0.0 <8.0.2>=8.1.0 <8.1.1
  • M
Incorrect Authorization

<7.8.10>=8.0.0 <8.0.2>=8.1.0 <8.1.1
  • M
Access Restriction Bypass

<7.8.7>=7.9.0 <7.9.5>=7.10.0 <7.10.3
  • L
Server-side Request Forgery (SSRF)

<7.8.7>=7.9.0 <7.10.3
  • M
Improper Restriction of Security Token Assignment

<7.8.7>=7.9.0 <7.9.5>=7.10.0 <7.10.3
  • M
Missing Authorization

>=7.8.0 <7.8.5>=7.9.0 <7.9.4>=7.10.0 <7.10.1
  • M
Denial of Service (DoS)

<7.8.3>=7.9.0 <7.9.2>=7.10.0 <7.10.1
  • M
Improper Input Validation

>=5.34.0 <7.1.9>=7.8.0 <7.8.4>=7.9.0 <7.9.3
  • M
Information Exposure

<7.1.6>=7.2.0 <7.7.2>=7.8.0 <7.8.1
  • L
Information Exposure

<6.5.0
  • L
Cross-site Scripting (XSS)

<6.4.0
  • M
Denial of Service (DoS)

<5.37.6>=5.38.0 <5.39.3>=6.0.0 <6.0.4>=6.1.0 <6.1.1>=6.2.0 <6.2.1