CVE-2026-10106
published 2026-07-13CVE-2026-10106: Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify that the channel referenced in an action cookie matches the channel…
PriorityP338medium6.5CVSS 3.1
AVNACLPRLUINSUCNIHAN
EPSS
0.18%
7.2th percentile
Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify that the channel referenced in an action cookie matches the channel of the target post, which allows an authenticated user without access to a private channel to trigger interactive post actions on posts in that channel via a cookie obtained from any accessible channel.. Mattermost Advisory ID: MMSA-2026-00690
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mattermost | mattermost | 10.11.0 – 10.11.19 | — |
| mattermost | mattermost | 11.6.0 – 11.6.4 | — |
| mattermost | mattermost | 11.7.0 – 11.7.2 | — |
| mattermost | mattermost_server | >= 10.11.0 < 10.11.20 | 10.11.20 |
| mattermost | mattermost_server | >= 11.6.0 < 11.6.5 | 11.6.5 |
| mattermost | mattermost_server | >= 11.7.0 < 11.7.3 | 11.7.3 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Mattermost up to 10.11.19/11.6.4/11.7.2/11.7.x Channel Verification access control (Nessus ID 327418)
vuldb·2026-07-18·CVSS 6.5
CVE-2026-10106 [MEDIUM] Mattermost up to 10.11.19/11.6.4/11.7.2/11.7.x Channel Verification access control (Nessus ID 327418)
A vulnerability labeled as problematic has been found in Mattermost up to 10.11.19/11.6.4/11.7.2/11.7.x. Affected is an unknown function of the component Channel Verification. Executing a manipulation can lead to improper access controls.
This vulnerability is handled as CVE-2026-10106. The attack can be executed remotely. There is not any exploit available.
GHSA
Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify that the channel referenced in an action cookie matches the channel of the target post, which allows an authe
ghsa_unreviewed·2026-07-13
CVE-2026-10106 [MEDIUM] CWE-863 Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify that the channel referenced in an action cookie matches the channel of the target post, which allows an authe
Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify that the channel referenced in an action cookie matches the channel of the target post, which allows an authenticated user without access to a private channel to trigger interactive post actions on posts in that channel via a cookie obtained from any accessible channel.. Mattermost Advisory ID: MMSA-2026-00690
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-07-13
Published