CNNVD-202512-3292 Information

CNNVD ID

CNNVD-202512-3292

CVE-2025-13352

  • CNNVD Published: 2025-12-17

Description (Chinese)

Mattermost是美国Mattermost公司的一个开源协作平台。 Mattermost存在安全漏洞,该漏洞源于在反应转发中未验证插件机器人身份,可能导致通过特制通知帖子劫持GitHub反应功能。

Description (English)

Mattermost is an open-source collaborative platform for Mattermost in the United States. There is a security loophole in Matermost, which stems from the failure to verify the robotic identity of the plugin in the response transmission, which could lead to the hijacking of GitHub response functions through a specially designed notification post.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Mattermost

Published

2025-12-17

Last Modified

2026-02-24

References

https://mattermost.com/security-updates

Patch

https://mattermost.com/security-updates/

Share on: