VendorsMattermostmattermost_server10.8.0
Vulnerabilities

Mattermost Server 10.8.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2025-4981
Path Traversal Leading to RCE by Any Authenticated Mattermost User
Published 2025-06-20 · Analyzed
9.9EPSS 0.008
CVE-2025-46702
Mattermost Playbooks allows privilege escalation through improper access control in playbook run participant management
Published 2025-06-30 · Analyzed
5.4EPSS 0.002
CVE-2025-47871
Mattermost Playbooks exposes private channel metadata to unauthorized users via run metadata API
Published 2025-06-30 · Analyzed
5.4EPSS 0.002
CVE-2025-3228
Unauthorized Guest user access to Playbook
Published 2025-06-20 · Analyzed
4.3EPSS 0.003
CVE-2025-3227
Unauthorized channel member management through playbook runs
Published 2025-06-20 · Analyzed
4.3EPSS 0.002