Total vulnerabilities in the database
Mattermost versions <11 fail to properly restrict access to archived channel search API which allows guest users to discover archived public channels via the /api/v4/teams/{team_id}/channels/search_archived endpoint
/api/v4/teams/{team_id}/channels/search_archived
CVSS v3:
CWEs:
No affected software listed.
SynScan provides clear, real-time security insights so you can monitor your attack surface, spot risks early, and act fast—without extra complexity.