mattermost

575 tracked vulnerabilities.

CVE-2025-2475 MEDIUM
Mattermost <10.5.1-10.4.3-9.11.9 - Info Disclosure
Apr 14, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-2424 LOW
Mattermost <10.5.2 - Info Disclosure
Apr 14, 2025
CVSS 3.1
EPSS 0.00
CVE-2025-32093 MEDIUM
Mattermost 9.11.0-9.11.9, 10.4.0-10.4.3, 10.5.0-10.5.1 - Incorrect Authorization via Granular Admin Permission
Apr 14, 2025
CVSS 4.7
EPSS 0.00
CVE-2025-30516 LOW
Mattermost Mobile Apps <=2.25.0 - Info Disclosure
Apr 14, 2025
CVSS 2.0
EPSS 0.01
CVE-2025-24866 LOW
Mattermost <9.11.8 - Info Disclosure
Apr 10, 2025
CVSS 2.7
EPSS 0.00
CVE-2025-1558 MEDIUM
Mattermost Mobile Apps <=2.25.0 - Info Disclosure
Mar 24, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-30179 MEDIUM
Mattermost <10.4.2-<10.3.3-<9.11.8 - Auth Bypass
Mar 21, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-27933 MEDIUM
Mattermost 9.11.0-9.11.8, 10.3.0-10.3.3, 10.4.0-10.4.2 - Incorrect Authorization in Channel Conversion
Mar 21, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-27715 LOW
Mattermost 9.11.0-9.11.8 - Incorrect Authorization via Permalink
Mar 21, 2025
CVSS 3.3
EPSS 0.00
CVE-2025-25274 MEDIUM
Mattermost <10.4.2-<10.3.3-<9.11.8 - Command Injection
Mar 21, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-25068 HIGH
Mattermost <10.4.2-10.5.0 - Auth Bypass
Mar 21, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-24920 MEDIUM
Mattermost 9.11.0-9.11.8, 10.3.0-10.3.3, 10.4.0-10.4.2, 10.5.0 - Incorrect Authorization in Bookmark Management
Mar 21, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-1472 MEDIUM
Mattermost 9.11.0-9.11.8 - Incorrect Authorization for Viewer Role
Mar 19, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-1398 LOW
Mattermost Desktop App <=5.10.0 - Untrusted Search Path via macOS Entitlements
Mar 17, 2025
CVSS 3.3
EPSS 0.00
CVE-2025-25279 CRITICAL
Mattermost <10.4.1-10.3.2-10.2.2 - Info Disclosure
Feb 24, 2025
CVSS 9.9
EPSS 0.55
CVE-2025-24526 MEDIUM
Mattermost 9.11.0-9.11.7 10.1.0-10.1.3 10.2.0-10.2.2 10.3.0-10.3.2 10.4.0-10.4.1 - Incorrect Authorization
Feb 24, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-24490 CRITICAL
Mattermost 9.11.0-9.11.7, 10.2.0-10.2.2, 10.3.0-10.3.2, 10.4.0-10.4.1 - SQL Injection via Boards Reordering
Feb 24, 2025
CVSS 9.6
EPSS 0.00
CVE-2025-20051 CRITICAL
Mattermost <10.4.1-10.3.2-10.2.2 - Info Disclosure
Feb 24, 2025
CVSS 9.9
EPSS 0.00
CVE-2025-1412 LOW
Mattermost <9.11.7, <10.4.2 - Privilege Escalation
Feb 24, 2025
CVSS 3.1
EPSS 0.00
CVE-2025-0503 LOW
Mattermost <9.11.7 - Info Disclosure
Feb 14, 2025
CVSS 3.1
EPSS 0.00
CVE-2025-20630 MEDIUM
Mattermost Mobile <=2.22.0 - Code Injection
Jan 16, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-20621 MEDIUM
Mattermost <10.2.0-10.2.0, <9.11.5-9.11.5, <10.0.3-10.0.3, <10.1.3-...
Jan 16, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-20072 MEDIUM
Mattermost Mobile <=2.22.0 - Code Injection
Jan 16, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-0476 MEDIUM
Mattermost Mobile Apps <=2.22.0 - DoS
Jan 16, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-21083 MEDIUM
Mattermost Mobile Apps <=2.22.0 - Code Injection
Jan 15, 2025
CVSS 6.5
EPSS 0.00