Boards in Mattermost allows an attacker to upload a malicious SVG image file as an attachment to a card and share it using a direct link to the file.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-1776.json"