CVE-2025-13767: Unauthorized Read Access to Private Channel Posts via Mattermost Jira Plugin
Mattermost versions 11.1.x <= 11.1.0, 11.0.x <= 11.0.5, 10.12.x <= 10.12.3, 10.11.x <= 10.11.7 fails to validate user channel membership when attaching Mattermost posts as comments to Jira issues, which allows an authenticated attacker with access to the Jira plugin to read post content and attachments from channels they do not have access to.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13767?
CVE-2025-13767 is rated as a high severity vulnerability due to improper validation of user channel membership.
How do I fix CVE-2025-13767?
To remediate CVE-2025-13767, upgrade Mattermost to versions 11.1.1, 11.0.6, 10.12.4, or 10.11.8 or later.
Who is affected by CVE-2025-13767?
CVE-2025-13767 affects Mattermost versions 11.1.x up to 11.1.0, 11.0.x up to 11.0.5, 10.12.x up to 10.12.3, and 10.11.x up to 10.11.7.
What can an attacker gain from CVE-2025-13767?
An authenticated attacker can exploit CVE-2025-13767 to read Mattermost posts attached as comments to Jira issues, potentially accessing sensitive information.
Is there a known exploit for CVE-2025-13767?
As of now, there are no public exploits confirmed for CVE-2025-13767, but the vulnerability poses a significant risk to affected systems.