In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade github.com/mattermost/mattermost/server/channels/app to version 10.5.13, 10.11.5, 10.12.2, 11.0.4 or higher.
github.com/mattermost/mattermost/server/channels/app is a private-cloud Slack alternative
Affected versions of this package are vulnerable to Incorrect Implementation of Authentication Algorithm due to improper validation of OAuth state tokens during the OpenID Connect authentication process. An attacker can gain unauthorized access to any user account by manipulating authentication data during the OAuth completion flow.