CNNVD-202511-1724 Information

CNNVD ID

CNNVD-202511-1724

CVE-2025-41436

  • CNNVD Published: 2025-11-14

Description (Chinese)

Mattermost是美国Mattermost公司的一个开源协作平台。 Mattermost 11.0之前版本存在安全漏洞,该漏洞源于未能正确执行允许用户查看归档频道的设置,可能导致普通用户通过关注线程中的在频道中打开功能访问归档频道内容和文件。

Description (English)

Mattermost is an open-source collaborative platform for Mattermost in the United States. There was a security loophole in the previous version of Mattermost 11.0, which resulted from the incorrect implementation of the set-up allowing users to view the archive channel, which could result in ordinary users accessing the archived channel content and files by opening the function in the channel in the line of interest.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Mattermost

Published

2025-11-14

Last Modified

2026-02-24

References

https://mattermost.com/security-updates https://access.redhat.com/security/cve/cve-2025-41436

Patch

https://mattermost.com/security-updates/

Share on: