CVE-2026-6346

8.7

Mattermost · Mattermost

A vulnerability in Mattermost allows an authenticated user with high privileges to perform unauthorized actions leading to information disclosure and integrity compromise.

Executive summary

Mattermost versions 11 contain a critical information and integrity vulnerability that requires high-level administrative access to exploit.

Vulnerability

This is a CWE-200 vulnerability (Exposure of Sensitive Information) that also impacts integrity. It requires an attacker to hold high privileges (PR:H) to successfully execute the exploit.

Business impact

With a CVSS score of 8.7 (High), this vulnerability poses a severe risk to system integrity and data confidentiality. An attacker with the necessary administrative credentials could bypass security controls to access or modify sensitive platform data, potentially leading to a complete compromise of the communication environment.

Remediation

Immediate Action: Update the Mattermost server to versions 11.6.0, 11.5.2, 10.11.14, or 11.4.4.

Proactive Monitoring: Review system logs for unauthorized configuration changes or access to sensitive data objects typically restricted to high-level administrators.

Compensating Controls: Implement multi-factor authentication (MFA) for all administrative accounts to reduce the likelihood of credential compromise, which is a prerequisite for this exploit.

Exploitation status

Public Exploit Available: Unknown.

Analyst recommendation

This vulnerability represents a significant risk to the integrity of the Mattermost platform. IT teams should treat this as a priority update and apply the vendor-provided patches immediately to ensure that administrative access is not leveraged to compromise sensitive data.

More Mattermost CVEs