logo

Warning: Critical Vulnerability in Mattermost (CVE-2025-4981), Patch Immediately!

ID: 590d658e-c350-5788-8266-c50e5322a3e0

STIX ID: report--590d658e-c350-5788-8266-c50e5322a3e0

Feed Name: Centre for Cybersecurity Belgium Advisories Feed

Threat Score
90/100

Date Published: 2025-06-23

Date Updated: 2026-07-24

...
...

A critical Mattermost vulnerability (CVE-2025-4981) allows authenticated users to upload specially crafted archives containing path traversal sequences that bypass extraction sanitization, enabling arbitrary file writes and potential remote code execution; the issue affects default deployments with file attachments and content extraction enabled and is rated CVSS 9.9. Immediate actions recommended are patching to the fixed version and increasing monitoring/detection for suspicious activity.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.