Uncontrolled resource consumption in Mattermost version 6.6.0 and earlier allows an authenticated attacker to crash the server via a crafted SVG attachment on a post.
{ "cpes": [ "cpe:2.3:a:mattermost:mattermost_server:*:*:*:*:*:*:*:*", "cpe:2.3:a:mattermost:mattermost_server:6.5.0:*:*:*:*:*:*:*", "cpe:2.3:a:mattermost:mattermost_server:6.6.0:*:*:*:*:*:*:*" ], "severity": "Medium" }