Beveiligingsadvies

CVE-2026-27769

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-04-15 10:11:07
Laatst bijgewerkt 2026-04-15 13:08:35
Toegewezen door Mattermost
CVSS-score 2.7
Status PUBLISHED

Beschrijving

Mattermost versions 10.11.x <= 10.11.12 fail to validate whether users were correctly owned by the correct Connected Workspace which allows a malicious remote server connected using the Conntexted Workspaces feature to change the displayed status of local users via the Connected Workspaces API.. Mattermost Advisory ID: MMSA-2026-00603