A vulnerability, which was classified as critical, has been found in Mattermost Server up to 4.0.4/4.1.0. This affects an unknown function of the component Email Template Handler. Performing a manipulation results in improper neutralization.

This vulnerability is identified as CVE-2017-18892. The attack can be initiated remotely. There is not any exploit available.

It is advisable to upgrade the affected component.