Mattermost Plugins versions <=11.4 11.0.4 11.1.3 11.3.2 10.11.11.0 fail to validate incoming request size which allows an authenticated attacker to cause service disruption via the webhook endpoint. Mattermost Advisory ID: MMSA-2026-00589
References
| Link | Resource |
|---|---|
| https://mattermost.com/security-updates |
Configurations
No configuration.
History
No history.
Information
Published : 2026-03-26 17:16
Updated : 2026-03-30 13:26
NVD link : CVE-2026-3116
Mitre link : CVE-2026-3116
CVE.ORG link : CVE-2026-3116
JSON object : View
Products Affected
No product.
CWE
CWE-400
Uncontrolled Resource Consumption
