Mattermost是美国Mattermost公司的一个开源协作平台。 Mattermost 10.5.1及之前10.5.x版本、10.4.3及之前10.4.x版本和9.11.9及之前9.11.x版本存在安全漏洞,该漏洞源于权限验证不当,可能导致未授权修改系统管理员。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Mattermost | Mattermost | 10.5.0 ~ 10.5.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-2475 | 5.4 MEDIUM | Unauthorized Bot Login Using Credentials |
| CVE-2025-2424 | 3.1 LOW | Leaked Metadata of Deleted Files via Bookmark Creation |
| CVE-2025-30516 | 2.0 LOW | Unauthorized Notification Exposure in Mobile App Under Specific Conditions |
No comments yet