CVE-2025-13767
published 2025-12-24CVE-2025-13767: Mattermost versions 11.1.x <= 11.1.0, 11.0.x <= 11.0.5, 10.12.x <= 10.12.3, 10.11.x <= 10.11.7 fails to validate user channel membership when attaching…
PriorityP423medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
EPSS
0.17%
6.5th percentile
Mattermost versions 11.1.x <= 11.1.0, 11.0.x <= 11.0.5, 10.12.x <= 10.12.3, 10.11.x <= 10.11.7 fails to validate user channel membership when attaching Mattermost posts as comments to Jira issues, which allows an authenticated attacker with access to the Jira plugin to read post content and attachments from channels they do not have access to.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| github.com | mattermost_mattermost-server | >= 10.11.0 < 10.11.8 | 10.11.8 |
| github.com | mattermost_mattermost-server | >= 10.11.0+incompatible < 10.11.8+incompatible | 10.11.8+incompatible |
| github.com | mattermost_mattermost-server | >= 10.12.0 < 10.12.4 | 10.12.4 |
| github.com | mattermost_mattermost-server | >= 10.12.0+incompatible < 10.12.4+incompatible | 10.12.4+incompatible |
| github.com | mattermost_mattermost-server | >= 11.0.0 < 11.0.6 | 11.0.6 |
| github.com | mattermost_mattermost-server | >= 11.0.1+incompatible < 11.0.6+incompatible | 11.0.6+incompatible |
| github.com | mattermost_mattermost-server | >= 11.1.0 < 11.1.1 | 11.1.1 |
| github.com | mattermost_mattermost-server | >= 11.1.0+incompatible < 11.1.1+incompatible | 11.1.1+incompatible |
| github.com | mattermost_mattermost_server_v8 | >= 0 < 8.0.0-20251121122154-b57c297c6d7 | 8.0.0-20251121122154-b57c297c6d7 |
| mattermost | mattermost | 10.11.0 – 10.11.7 | — |
| mattermost | mattermost | 10.12.0 – 10.12.3 | — |
| mattermost | mattermost | 11.0.0 – 11.0.5 | — |
| mattermost | mattermost | 11.1.0 – 11.1.0 | — |
| mattermost | mattermost_server | >= 10.11.0 < 10.11.8 | 10.11.8 |
| mattermost | mattermost_server | >= 10.12.0 < 10.12.4 | 10.12.4 |
| mattermost | mattermost_server | >= 11.0.0 < 11.0.6 | 11.0.6 |
| mattermost | mattermost_server | >= 11.1.0 < 11.1.1 | 11.1.1 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues in github.com/mattermost/mattermost-server
osv·2026-02-26
CVE-2025-13767 Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues in github.com/mattermost/mattermost-server
Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues in github.com/mattermost/mattermost-server
Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues in github.com/mattermost/mattermost-server.
NOTE: The source advisory for this report contains additional versions that could not be automatically mapped to standard Go module versions.
(If this is causing false-positive reports from vulnerability scanners, please suggest an edit to the report.)
The additional affected modules and versions are: github.com/mattermost/mattermost/server/v8 before v8.0.0-20251121122154-b57c297c6d7.
OSV
Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues
osv·2025-12-24
CVE-2025-13767 [MEDIUM] Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues
Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues
Mattermost versions 11.1.x <= 11.1.0, 11.0.x <= 11.0.5, 10.12.x <= 10.12.3, 10.11.x <= 10.11.7 fails to validate user channel membership when attaching Mattermost posts as comments to Jira issues, which allows an authenticated attacker with access to the Jira plugin to read post content and attachments from channels they do not have access to.
GHSA
Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues
ghsa·2025-12-24
CVE-2025-13767 [MEDIUM] CWE-863 Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues
Mattermost doesn't validate user channel membership when attaching Mattermost posts as comments to Jira issues
Mattermost versions 11.1.x <= 11.1.0, 11.0.x <= 11.0.5, 10.12.x <= 10.12.3, 10.11.x <= 10.11.7 fails to validate user channel membership when attaching Mattermost posts as comments to Jira issues, which allows an authenticated attacker with access to the Jira plugin to read post content and attachments from channels they do not have access to.
No detection rules found.
No public exploits indexed.
2025-12-24
Published