Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 384 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2025-24839 Unauthorized AI bot activation via Wrangler plugin MattermostMattermost Low 3.1 2025-04-16 07:44:21 Deep Dive
CVE-2025-2424 Leaked Metadata of Deleted Files via Bookmark Creation MattermostMattermost Low 3.1 2025-04-14 14:49:36 Deep Dive
CVE-2025-2475 Unauthorized Bot Login Using Credentials MattermostMattermost Medium 5.4 2025-04-14 14:49:36 Deep Dive
CVE-2025-32093 Syatem admin profile modification by delegated granular administration role MattermostMattermost Medium 4.7 2025-04-14 06:57:54 Deep Dive
CVE-2025-30516 Unauthorized Notification Exposure in Mobile App Under Specific Conditions MattermostMattermost Low 2.0 2025-04-14 06:56:22 Deep Dive
CVE-2025-24866 Unauthorized Access to User Activity Logs API by delegated granular administration roles MattermostMattermost Low 2.7 2025-04-10 15:33:22 Deep Dive
CVE-2025-1558 Denial of Service Via Malicious GIF MattermostMattermost Medium 6.5 2025-03-24 15:01:52 Deep Dive
CVE-2025-25068 Bypassing MFA Enforcement on Plugin Endpoints MattermostMattermost High 7.5 2025-03-21 08:26:32 Deep Dive
CVE-2025-24920 Unauthorized Bookmark Creation and Modification in Archived Channels MattermostMattermost Medium 4.3 2025-03-21 08:25:45 Deep Dive
CVE-2025-30179 MFA Enforcement Bypass in Search APIs MattermostMattermost Medium 4.3 2025-03-21 08:24:58 Deep Dive
CVE-2025-25274 Unauthorized Command Execution in Archived Channels MattermostMattermost Medium 4.3 2025-03-21 08:24:13 Deep Dive
CVE-2025-27933 Unauthorized Private-to-Public Channel Conversion MattermostMattermost Medium 5.4 2025-03-21 08:23:21 Deep Dive
CVE-2025-27715 Auto-Enrollment of Team Admins into Private Channels without explicit consent MattermostMattermost Low 3.3 2025-03-21 08:22:25 Deep Dive
CVE-2025-1472 Unauthorized View Access to Site Statistics and Team Statistics MattermostMattermost Medium 4.3 2025-03-19 14:11:04 Deep Dive
CVE-2025-1398 macOS TCC Bypass via Code Injection MattermostMattermost Low 3.3 2025-03-17 14:19:52 Deep Dive
CVE-2025-20051 Arbitrary file read via block duplication in Mattermost Boards MattermostMattermost Critical 9.9 2025-02-24 07:27:23 Deep Dive
CVE-2025-24490 SQL Injection in Mattermost Boards via board category ID reordering MattermostMattermost Critical 9.6 2025-02-24 07:26:31 Deep Dive
CVE-2025-25279 Arbitrary file read in Mattermost Boards via import & export board archive MattermostMattermost Critical 9.9 2025-02-24 07:25:27 Deep Dive
CVE-2025-1412 Session Persistence After User-to-Bot Conversion MattermostMattermost Low 3.1 2025-02-24 07:24:47 Deep Dive
CVE-2025-24526 Channel export permitted on archived channel when viewing archived channels is disabled MattermostMattermost Medium 4.3 2025-02-24 07:23:23 Deep Dive