CVE-2025-52931 Information

Description

Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the plugin via constant hit to update channel subscription endpoint with an invalid request body.

Reference

https://mattermost.com/security-updates

CNNVD-202508-950 (Published: 2025-08-11)

Share on: