Unrated severityNVD Advisory· Published Jan 16, 2025· Updated Jan 16, 2025
Mobile crash via improper validation of proto style in attachments
CVE-2025-20072
Description
Mattermost Mobile versions <= 2.22.0 fail to properly validate the style of proto supplied to an action's style in post.props.attachments, which allows an attacker to crash the mobile via crafted malicious input.
Affected products
1- Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.