CVE-2025-3913 Team Privacy Settings Authorization Bypass in Mattermost Server

Mattermost versions 10.7.x <= 10.7.0, 10.6.x <= 10.6.2, 10.5.x <= 10.5.3, 9.11.x <= 9.11.12 fail to properly validate permissions when changing team privacy settings, allow ...

Continue Reading
CVE-2025-4081

creation_timestamp| type| source ---|---|--- 2025-05-29 15:13:57+00:00| seen|...Read More ...

Continue Reading
CVE-2025-3913

Mattermost versions 10.7.x <= 10.7.0, 10.6.x <= 10.6.2, 10.5.x <= 10.5.3, 9.11.x <= 9.11.12 fail to properly validate permissions when changing team privacy settings, allow ...

Continue Reading
CVE-2025-37999

creation_timestamp| type| source ---|---|--- 2025-05-29 13:51:01+00:00| seen|...Read More ...

Continue Reading
CVE-2025-37999

creation_timestamp| type| source ---|---|--- 2025-05-29 13:51:01+00:00| seen|...Read More ...

Continue Reading
CVE-2025-48370

auth-js is an isomorphic Javascript library for Supabase Auth. Prior to version 2.69.1, the library functions getUserById, deleteUser, updateUserById, listFactors and deleteFactor did not require the ...

Continue Reading
CVE-2025-33043

creation_timestamp| type| source ---|---|--- 2025-05-29 15:13:57+00:00| seen|...Read More ...

Continue Reading
CVE-2025-37994

creation_timestamp| type| source ---|---|--- 2025-05-29 13:51:02+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: