CNNVD-202508-2637 Information

CNNVD ID

CNNVD-202508-2637

CVE-2025-8023

  • CNNVD Published: 2025-08-21

Description (Chinese)

Mattermost是美国Mattermost公司的一个开源协作平台。 Mattermost 10.8.3及之前10.8.x版本、10.5.8及之前10.5.x版本、9.11.17及之前9.11.x版本、10.9.2及之前10.9.x版本存在安全漏洞,该漏洞源于未清理路径遍历序列,可能导致恶意文件放置。

Description (English)

Mattermost is an open-source collaborative platform for Mattermost in the United States. There is a security loophole in Mettermost10.8.3 and earlier versions 10.8.x, 10.5.8 and earlier versions 10.5.x, 9.11.17 and earlier versions 9.11.x, 10.9.2 and earlier versions 10.9.x, which originates from the uncleaned path through series and may lead to the placement of malicious documents.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Mattermost

Published

2025-08-21

Last Modified

2026-02-24

References

https://mattermost.com/security-updates https://nvd.nist.gov/vuln/detail/CVE-2025-8023

Patch

https://mattermost.com/security-updates

Share on: