Mattermost Security Vulnerabilities (CVEs)
Track 106 security vulnerabilities affecting Mattermost products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.
This vulnerability allows authenticated Mattermost users to execute slash commands in channels they don't have access to by linking a playbook run to ...
May 26, 2024This vulnerability allows authenticated attackers to take over other user accounts in Mattermost by exploiting a flaw in authentication switching from...
Mar 15, 2024Mattermost versions 2.10.0 and earlier contain a CSRF vulnerability due to improper sanitization of deeplink paths. This allows attackers to trick aut...
Dec 29, 2023Mattermost web applications fail to properly validate route parameters in the team/channel URL path, allowing attackers to perform client-side path tr...
Dec 6, 2023The Mattermost iOS app fails to properly validate TLS server certificates during WebSocket connection initialization, allowing network attackers to pe...
Jul 17, 2023This vulnerability allows attackers to upload malicious SVG files to Mattermost Boards and share them via direct links. When users view these SVG file...
Mar 31, 2023Why Monitor Mattermost Security Vulnerabilities?
Real-time CVE tracking: Our automated system monitors 106+ known vulnerabilities affecting Mattermost products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.
Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Mattermost packages in under 60 seconds. No agents required - completely agentless scanning that works across Mattermost deployments.
Free vulnerability database: Access detailed information about every Mattermost CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.
🚀 Get Started in 60 Seconds
- Register free account & add your servers
- Run one-time scan or schedule automatic monitoring (every 1-24 hours)
- Receive instant alerts when new Mattermost CVEs affect your systems
- Access dashboard with severity breakdown & fix instructions