CVE-2025-55070
EUVD-2025-18655614.11.2025, 08:15
Mattermost versions <11 fail to enforce multi-factor authentication on WebSocket connections which allows unauthenticated users to access sensitive information via WebSocket eventsEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mattermost | mattermost_server | 𝑥 < 11.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References