Логотип exploitDog
bind:CVE-2025-41395
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-41395

Количество 3

Количество 3

nvd логотип

CVE-2025-41395

10 месяцев назад

Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11.10 fail to properly validate the props used by the RetrospectivePost custom post type in the Playbooks plugin, which allows an attacker to create a specially crafted post with maliciously crafted props and cause a denial of service (DoS) of the web app for all users.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-41395

10 месяцев назад

Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11 ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3g36-gf7c-75qw

10 месяцев назад

Mattermost Playbooks fails to properly validate the props used by the RetrospectivePost custom post type

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-41395

Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11.10 fail to properly validate the props used by the RetrospectivePost custom post type in the Playbooks plugin, which allows an attacker to create a specially crafted post with maliciously crafted props and cause a denial of service (DoS) of the web app for all users.

CVSS3: 6.5
0%
Низкий
10 месяцев назад
debian логотип
CVE-2025-41395

Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11 ...

CVSS3: 6.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-3g36-gf7c-75qw

Mattermost Playbooks fails to properly validate the props used by the RetrospectivePost custom post type

CVSS3: 6.5
0%
Низкий
10 месяцев назад

Уязвимостей на страницу