CVE-2025-11776
EUVD-2025-18655814.11.2025, 08:15
Mattermost versions <11 fail to properly restrict access to archived channel search API which allows guest users to discover archived public channels via the `/api/v4/teams/{team_id}/channels/search_archived` endpointEnginsightAffected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mattermost | mattermost_server | 𝑥 < 11.0.0 |
𝑥
= Vulnerable software versions
References