cbcvebase.
CVE-2016-11084
published 2020-06-19

CVE-2016-11084: An issue was discovered in Mattermost Server before 2.1.0. It allows XSS via CSRF.

medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
An issue was discovered in Mattermost Server before 2.1.0. It allows XSS via CSRF.

Affected

3 ranges
VendorProductVersion rangeFixed in
github.commattermost_mattermost-server>= 0 < 2.1.0+incompatible2.1.0+incompatible
github.commattermost_mattermost-server>= 0 < 2.1.02.1.0
mattermostmattermost_server< 2.1.02.1.0