<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T14:50:52.353717+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0052</id>
    <title>certfr-2026-avi-0052 — De multiples vulnérabilités ont été découvertes dans Mattermost Server. Elles permettent à un attaquant de provoquer un…</title>
    <updated>2026-10-06T14:50:52.406837+00:00</updated>
    <content>certfr-2026-avi-0052</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0052"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-268727</id>
    <title>EUVD-2026-268727</title>
    <updated>2026-10-06T14:50:52.406880+00:00</updated>
    <content>EUVD-2026-268727</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-268727"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-14573</id>
    <title>fkie_cve-2025-14573</title>
    <updated>2026-10-06T14:50:52.406895+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Mattermost versions 10.11.x &lt;= 10.11.9 fail to enforce invite permissions when updating team settings, which allows team administrators without proper permissions to bypass restrictions and add users to their team via API requests. Mattermost Advisory ID: MMSA-2025-00561</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-14573"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-cgjg-p2m2-qm4p</id>
    <title>GHSA-cgjg-p2m2-qm4p — Mattermost fails to enforce invite permissions when updating team settings</title>
    <updated>2026-10-06T14:50:52.406925+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/mattermost/mattermost/server/v8, Go: github.com/mattermost/mattermost-server</p>
<p>Mattermost versions 10.11.x &lt;= 10.11.9 fail to enforce invite permissions when updating team settings, which allows team administrators without proper permissions to bypass restrictions and add users to their team via API requests. Mattermost Advisory ID: MMSA-2025-00561</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-cgjg-p2m2-qm4p"/>
  </entry>
</feed>
