GHSA-8HMM-4CRW-VM2C

creation_timestamp| type| source ---|---|--- 2025-08-21 16:33:29+00:00| seen|...Read More ...

Continue Reading
CVE-2024-45438

creation_timestamp| type| source ---|---|--- 2025-08-21 16:33:04+00:00| seen|...Read More ...

Continue Reading
CVE-2025-55564

creation_timestamp| type| source ---|---|--- 2025-08-21 16:28:42+00:00| seen|...Read More ...

Continue Reading
CVE-2025-51818

creation_timestamp| type| source ---|---|--- 2025-08-21 16:23:42+00:00| seen|...Read More ...

Continue Reading
Mattermost Fails to Properly Validate Team Role Modification

Mattermost versions 10.5.x <= 10.5.8, 9.11.x <= 9.11.17 fail to properly validate authorization for team scheme role modifications which allows Team Admins to demote Team Members to Gues ...

Continue Reading
Mattermost Does Not Sanitize the Team Invite ID

Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 9.11.x <= 9.11.17, 10.9.x <= 10.9.2 fail to sanitize the team invite ID in the POST /api/v4/teams/:teamId/restore e ...

Continue Reading
EUVD-2025-25420

Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 9.11.x <= 9.11.17, 10.9.x <= 10.9.2 fail to sanitize the team invite ID in the POST /api/v4/teams/:teamId/restore e ...

Continue Reading
@musistudio/claude-code-router has improper CORS configuration

Impact Due to improper Cross-Origin Resource Sharing (CORS) configuration, there is a risk that user API Keys or equivalent credentials may be exposed to untrusted domains. Attackers could exploit thi ...

Continue Reading

Back to Main

Subscribe for the latest news: