Multiples vulnérabilités dans Mattermost Server (16 septembre 2026)
Multiple vulnerabilities have been discovered in Mattermost Server, potentially leading to data confidentiality issues and unspecified security problems. These vulnerabilities affect older versions of the platform. Users are advised to consult the Mattermost security updates for available patches and mitigations.
Multiple security vulnerabilities have been identified within Mattermost Server. The CERT-FR report indicates that these vulnerabilities could compromise data confidentiality and introduce unspecified security risks. Affected versions of Mattermost Server include: versions 11.10.x prior to 11.10.2, versions 11.7.x prior to 11.7.11, versions 11.8.x prior to 11.8.6, versions 11.9.x prior to 11.9.2, and all versions prior to 10.11.23. The report references several security bulletins from Mattermost, including MMSA-2026-00702, MMSA-2026-00711, MMSA-2026-00726, MMSA-2026-00727, MMSA-2026-00747, MMSA-2026-00748, MMSA-2026-00752, MMSA-2026-00754, MMSA-2026-00756, MMSA-2026-00757, MMSA-2026-00758, MMSA-2026-00761, MMSA-2026-00763, MMSA-2026-00764, MMSA-2026-00765, MMSA-2026-00766, MMSA-2026-00773. A specific CVE identifier, CVE-2026-91181, has been assigned to one of these vulnerabilities. Users are strongly encouraged to consult the Mattermost security updates linked in the report for detailed information and to apply the necessary patches to address these security concerns.