An issue was discovered in Mattermost Server before 3.2.0. It mishandles brute-force attempts at password change.
mitre·CWE-521·Published 2020-06-19