<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:45:10 +0000</lastBuildDate>
    <item>
      <title>certfr-2025-avi-0355 — De multiples vulnérabilités ont été découvertes dans Mattermost Server. Elles permettent à un attaquant de provoquer un…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0355</link>
      <description>certfr-2025-avi-0355</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0355</guid>
    </item>
    <item>
      <title>cnvd-2025-12759</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-12759</link>
      <description>cnvd-2025-12759</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-12759</guid>
    </item>
    <item>
      <title>EUVD-2026-242106</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-242106</link>
      <description>EUVD-2026-242106</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-242106</guid>
    </item>
    <item>
      <title>fkie_cve-2025-3611</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-3611</link>
      <description>&lt;p&gt;Mattermost versions 10.7.x &amp;lt;= 10.7.0, 10.5.x &amp;lt;= 10.5.3, 9.11.x &amp;lt;= 9.11.12 fails to properly enforce access control restrictions for System Manager roles, allowing authenticated users with System Manager privileges to view team details they should not have access to via direct API requests to team endpoints, even when explicitly configured with &amp;#39;No access&amp;#39; to Teams in the System Console.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mattermost versions 10.7.x &amp;lt;= 10.7.0, 10.5.x &amp;lt;= 10.5.3, 9.11.x &amp;lt;= 9.11.12 fails to properly enforce access control restrictions for System Manager roles, allowing authenticated users with System Manager privileges to view team details they should not have access to via direct API requests to team endpoints, even when explicitly configured with &amp;#39;No access&amp;#39; to Teams in the System Console.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-3611</guid>
    </item>
    <item>
      <title>GHSA-86jg-35xj-3vv5 — Mattermost fails to properly enforce access control restrictions for System Manager roles</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-86jg-35xj-3vv5</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/mattermost/mattermost/server/v8&lt;/p&gt;
&lt;p&gt;Mattermost versions 10.7.x &amp;lt;= 10.7.0, 10.5.x &amp;lt;= 10.5.3, 9.11.x &amp;lt;= 9.11.12 fails to properly enforce access control restrictions for System Manager roles, allowing authenticated users with System Manager privileges to view team details they should not have access to via direct API requests to team endpoints, even when explicitly configured with &amp;#39;No access&amp;#39; to Teams in the System Console.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/mattermost/mattermost/server/v8&lt;/p&gt;
&lt;p&gt;Mattermost versions 10.7.x &amp;lt;= 10.7.0, 10.5.x &amp;lt;= 10.5.3, 9.11.x &amp;lt;= 9.11.12 fails to properly enforce access control restrictions for System Manager roles, allowing authenticated users with System Manager privileges to view team details they should not have access to via direct API requests to team endpoints, even when explicitly configured with &amp;#39;No access&amp;#39; to Teams in the System Console.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-86jg-35xj-3vv5</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15225-1 — govulncheck-vulndb-0.0.20250612T141001-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15225-1</link>
      <description>&lt;p&gt;govulncheck-vulndb-0.0.20250612T141001-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;govulncheck-vulndb-0.0.20250612T141001-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15225-1</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0905 — Mattermost: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0905</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Mattermost ausnutzen, um Sicherheitsmechanismen zu umgehen und Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Mattermost ausnutzen, um Sicherheitsmechanismen zu umgehen und Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0905</guid>
    </item>
  </channel>
</rss>
