Loading HuntDB...

mattermost

12 Products 215 CVEs

CVE Severity Distribution (All Time)

Critical
0
High
14
Medium
133
Low
68

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 48 CVEs

Recent CVEs

View all
CVE-2025-0476 MEDIUM 6 months, 2 weeks ago

Mattermost Mobile Apps versions <=2.22.0 fail to properly handle specially crafted attachment names, which allows an attacker to crash the mobile app…

CVE-2025-22445 LOW 6 months, 3 weeks ago

Mattermost versions 10.x <= 10.2 fail to accurately reflect missing settings, which allows confusion for admins regarding a Calls security-sensitive …

CVE-2025-20033 MEDIUM 6 months, 3 weeks ago

Mattermost versions 10.2.0, 9.11.x <= 9.11.5, 10.0.x <= 10.0.3, 10.1.x <= 10.1.3 fail to properly validate post types, which allows attackers to deny…

CVE-2025-22449 LOW 6 months, 3 weeks ago

Mattermost versions 9.11.x <= 9.11.5 fail to enforce invite permissions, which allows team admins, with no permission to invite users to their team, …

CVE-2024-11358 MEDIUM 7 months, 2 weeks ago

Mattermost Android Mobile Apps versions <=2.21.0 fail to properly configure file providers which allows an attacker with local access to access files…

CVE-2024-54682 MEDIUM 7 months, 2 weeks ago

Mattermost versions 10.1.x <= 10.1.2, 10.0.x <= 10.0.2, 9.11.x <= 9.11.4, 9.5.x <= 9.5.12 fail to limit the file size for slack import file uploads w…

CVE-2024-54083 MEDIUM 7 months, 2 weeks ago

Mattermost versions 10.1.x <= 10.1.2, 10.0.x <= 10.0.2, 9.11.x <= 9.11.4, 9.5.x <= 9.5.12 fail to properly validate the type of callProps which allow…

CVE-2024-48872 MEDIUM 7 months, 2 weeks ago

Mattermost versions 10.1.x <= 10.1.2, 10.0.x <= 10.0.2, 9.11.x <= 9.11.4, and 9.5.x <= 9.5.12 fail to prevent concurrently checking and updating the …

CVE-2024-12247 MEDIUM 7 months, 3 weeks ago

Mattermost versions 9.7.x <= 9.7.5, 9.8.x <= 9.8.2 and 9.9.x <= 9.9.2 fail to properly propagate permission scheme updates across cluster nodes which…

CVE-2024-11599 HIGH 8 months ago

Mattermost versions 10.0.x <= 10.0.1, 10.1.x <= 10.1.1, 9.11.x <= 9.11.3, 9.5.x <= 9.5.11 fail to properly validate email addresses which allows an u…