cbcvebase.
CVE-2026-6517
published 2026-06-15

CVE-2026-6517: Mattermost Desktop App versions <=6.1 5.5.13.0 fail to restrict the allow list of domains to which NTLM credentials were forwarded to in the Mattermost Desktop…

PriorityP346high7.7CVSS 3.1
AVNACLPRLUINSCCHINAN
EPSS
0.19%
8.5th percentile
Mattermost Desktop App versions <=6.1 5.5.13.0 fail to restrict the allow list of domains to which NTLM credentials were forwarded to in the Mattermost Desktop App which allows any user on a server without the image proxy enabled to intercept other users credentials via embedding an image that routes to an external web server. Mattermost Advisory ID: MMSA-2026-00651

Affected

3 ranges
VendorProductVersion rangeFixed in
mattermostmattermost<= 5.5.13
mattermostmattermost_desktop<= 5.13.0
mattermostmattermost_desktop6.1.0 – 6.1.5
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.