CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 3.1. It affects Oracle.
CVE
CVE-2024-45843
Severity
LOW
CVSS
3.1
EPSS
0.21%
Oracle
Original NVD Description
Mattermost versions 9.5.x <= 9.5.8 fail to include the metadata endpoints of Oracle Cloud and Alibaba in the SSRF denylist, which allows an attacker to possibly cause an SSRF if Mattermost was deployed in Oracle Cloud or Alibaba.
Related CVEs
Other vulnerabilities affecting the same vendor(s)