CVE-2017-18905: Medium severity mattermost vulnerability
An issue was discovered in Mattermost Server before 4.0.0, 3.10.2, and 3.9.2, when used as an OAuth 2.0 service provider, Session invalidation was mishandled.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-18905?
CVE-2017-18905 is an issue discovered in Mattermost Server before version 4.0.0, 3.10.2, and 3.9.2, when used as an OAuth 2.0 service provider, where session invalidation was mishandled.
How severe is CVE-2017-18905?
CVE-2017-18905 has a severity rating of 5.3, which is classified as medium.
Which software versions are affected by CVE-2017-18905?
Mattermost Server versions up to and excluding 3.9.2, and versions between 3.10.0 and 3.10.2 are affected by CVE-2017-18905.
How can I fix CVE-2017-18905?
To fix CVE-2017-18905, it is recommended to update Mattermost Server to version 4.0.0 or higher.
Where can I find more information about CVE-2017-18905?
You can find more information about CVE-2017-18905 at the following link: [https://mattermost.com/security-updates/](https://mattermost.com/security-updates/)