CVE-2026-3116

Mattermost Plugins versions <=11.4 11.0.4 11.1.3 11.3.2 10.11.11.0 fail to validate incoming request size which allows an authenticated attacker to cause service disruption via the webhook endpoint. Mattermost Advisory ID: MMSA-2026-00589
References
Configurations

No configuration.

History

No history.

Information

Published : 2026-03-26 17:16

Updated : 2026-03-30 13:26


NVD link : CVE-2026-3116

Mitre link : CVE-2026-3116

CVE.ORG link : CVE-2026-3116


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption