mattermost
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 647 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 19, 2020 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Mattermost server missing request body size limit on plugin routes allows denial of service by an authenticated user
Mattermost server-side request forgery via OAuth endpoints configurable by a System Administrator
Unbounded post ID array in the bulk reactions endpoint allows denial of service
Mattermost Desktop App plugin popout scheme validation bypass
Mattermost Desktop local network access from server-rendered content
Data Retention Teams Endpoint Leaks Private Team Invite ID
Mattermost DCR redirect URI allowlist bypass via improper URL component validation
Mattermost ABAC parent policy bypass via policy update endpoint
MS Calendar plugin: unrecovered handler panics from malformed post-action requests could crash the plugin process
Mattermost Server Algorithmic DoS via Unbounded Markdown Block Nesting
Monitor mattermost in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.