Mattermost fails to properly enforce access control restrictions for System Manager roles

Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11.12 fails to properly enforce access control restrictions for System Manager roles, allowing authenticated us ...

Continue Reading
CVE-2025-48949

creation_timestamp| type| source ---|---|--- 2025-05-30 20:20:01+00:00| seen|...Read More ...

Continue Reading
CVE-2025-5360

creation_timestamp| type| source ---|---|--- 2025-05-30 20:15:47+00:00| seen|...Read More ...

Continue Reading
Mattermost fails to properly enforce access control restrictions for System Manager roles

Mattermost versions 10.7.x <= 10.7.0, 10.5.x <= 10.5.3, 9.11.x <= 9.11.12 fails to properly enforce access control restrictions for System Manager roles, allowing authenticated us ...

Continue Reading
CVE-2025-48942 vLLM DOS: Remotely kill vllm over http with invalid JSON schema

vLLM is an inference and serving engine for large language models (LLMs). In versions 0.8.0 up to but excluding 0.9.0, hitting the /v1/completions API with a invalid json_schema as a Guided Param kil ...

Continue Reading
CVE-2025-5357

creation_timestamp| type| source ---|---|--- 2025-05-30 18:16:40+00:00| seen|...Read More ...

Continue Reading
CVE-2025-4094

creation_timestamp| type| source ---|---|--- 2025-05-30 21:02:23+00:00| seen|...Read More ...

Continue Reading
CVE-2022-29469

creation_timestamp| type| source ---|---|--- 2025-05-30 21:02:20+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: