VYPR
Unrated severityNVD Advisory· Published Jan 16, 2025· Updated Jan 16, 2025

Mobile crash via improper validation of proto style in attachments

CVE-2025-20072

Description

Mattermost Mobile versions <= 2.22.0 fail to properly validate the style of proto supplied to an action's style in post.props.attachments, which allows an attacker to crash the mobile via crafted malicious input.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.