<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 09:17:58 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-0752 — De multiples vulnérabilités ont été découvertes dans les produits Mattermost. Elles permettent à un attaquant de provoq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0752</link>
      <description>certfr-2026-avi-0752</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0752</guid>
    </item>
    <item>
      <title>EUVD-2026-336470</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-336470</link>
      <description>EUVD-2026-336470</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-336470</guid>
    </item>
    <item>
      <title>fkie_cve-2026-10103</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-10103</link>
      <description>&lt;p&gt;Mattermost versions 11.7.x &amp;lt;= 11.7.2, 11.6.x &amp;lt;= 11.6.4, 10.11.x &amp;lt;= 10.11.19 fail to verify post ownership in the shared channel inbound sync handler, which allows an authenticated remote cluster to modify or delete posts authored by local users or other remotes via crafted sync messages referencing arbitrary post IDs in channels shared with that remote.. Mattermost Advisory ID: MMSA-2026-00689&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mattermost versions 11.7.x &amp;lt;= 11.7.2, 11.6.x &amp;lt;= 11.6.4, 10.11.x &amp;lt;= 10.11.19 fail to verify post ownership in the shared channel inbound sync handler, which allows an authenticated remote cluster to modify or delete posts authored by local users or other remotes via crafted sync messages referencing arbitrary post IDs in channels shared with that remote.. Mattermost Advisory ID: MMSA-2026-00689&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-10103</guid>
    </item>
    <item>
      <title>GHSA-4h7j-7xp4-wp5p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4h7j-7xp4-wp5p</link>
      <description>&lt;p&gt;Mattermost versions 11.7.x &amp;lt;= 11.7.2, 11.6.x &amp;lt;= 11.6.4, 10.11.x &amp;lt;= 10.11.19 fail to verify post ownership in the shared channel inbound sync handler, which allows an authenticated remote cluster to modify or delete posts authored by local users or other remotes via crafted sync messages referencing arbitrary post IDs in channels shared with that remote.. Mattermost Advisory ID: MMSA-2026-00689&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mattermost versions 11.7.x &amp;lt;= 11.7.2, 11.6.x &amp;lt;= 11.6.4, 10.11.x &amp;lt;= 10.11.19 fail to verify post ownership in the shared channel inbound sync handler, which allows an authenticated remote cluster to modify or delete posts authored by local users or other remotes via crafted sync messages referencing arbitrary post IDs in channels shared with that remote.. Mattermost Advisory ID: MMSA-2026-00689&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4h7j-7xp4-wp5p</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1932 — Mattermost: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1932</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Mattermost ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Mattermost ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1932</guid>
    </item>
  </channel>
</rss>
