4

CVSS3.1

CVE-2025-53910 - Unauthorized Channel Subscription Edit in Mattermost Confluence Plugin

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers to create a channel subscription without proper access to the channel via API call to the edit channel subscription endpoint.

๐Ÿ“… Published: Aug. 11, 2025, 6:57 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

3.7

CVSS3.1

CVE-2025-53857 - Lack of Authorization on Get Channel Subscriptions for Autocomplete in Mattermost Confluence Plugin

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers to get channel subscription details without proper access to the channel via API call to the GET autocomplete/GetChannelSubscriptions endpoint.

๐Ÿ“… Published: Aug. 11, 2025, 6:57 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

5.9

CVSS3.1

CVE-2025-53514 - Unexpected Input to Server Webhook endpoint Causes DoS in Mattermost Confluence Plugin

Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the plugin via constant hit to server webhook endpoint with an invalid request body.

๐Ÿ“… Published: Aug. 11, 2025, 6:57 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

7.5

CVSS3.1

CVE-2025-52931 - Unexpected input to Update Channel Subscription endpoint causes DoS in Mattermost Confluence Plugin

Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the plugin via constant hit to update channel subscription endpoint with an invalid request body.

๐Ÿ“… Published: Aug. 11, 2025, 6:57 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

3.7

CVSS3.1

CVE-2025-49221 - Unauthenticated Access to Channel Subscription in Mattermost Confluence Plugin

Mattermost Confluence Plugin version <1.5.0 fails to enforce authentication of the user to the Mattermost instance which allows unauthenticated attackers to access subscription details without via API call to GET subscription endpoint.

๐Ÿ“… Published: Aug. 11, 2025, 6:56 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

6.4

CVSS3.1

CVE-2025-48731 - Unauthorized Subscription Edit to Confluence Space in Mattermost Confluence Plugin

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the Confluence space which allows attackers to edit a subscription for a Confluence space the user does not have access for via edit subscription endpoint.

๐Ÿ“… Published: Aug. 11, 2025, 6:56 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

7.2

CVSS3.1

CVE-2025-44004 - Unauthenticated Channel Subscription Creation in Mattermost Confluence Plugin

Mattermost Confluence Plugin version <1.5.0 fails to check the authorization of the user to the Mattermost instance which allows attackers to create a channel subscription without proper authorization via API call to the create channel subscription endpoint.

๐Ÿ“… Published: Aug. 11, 2025, 6:56 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

4

CVSS3.1

CVE-2025-44001 - Unauthorized Channel Subscription Read in Mattermost Confluence Plugin

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers to get channel subscription details without proper access to the channel via API call to the Get Channel Subscriptions details endpoint.

๐Ÿ“… Published: Aug. 11, 2025, 6:56 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

8.9

CVSS4.0

CVE-2025-7679 - Session ID Basic Auth Bypass

Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects Aspect: All versions.

๐Ÿ“… Published: Aug. 11, 2025, 6:36 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.

8.2

CVSS4.0

CVE-2025-7677 - DOS attack possible

Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects Aspect: All versions.

๐Ÿ“… Published: Aug. 11, 2025, 6:36 p.m. ๐Ÿ”„ Last Modified: Aug. 12, 2025, 2:25 p.m.
Total resulsts: 305865
Page 104 of 30,587
ยซ previous page ยป next page
Filters