Vulnerability Database

302,032

Total vulnerabilities in the database

CVE-2025-41436

Mattermost versions <11.0 fail to properly enforce the "Allow users to view archived channels" setting which allows regular users to access archived channel content and files via the "Open in Channel" functionality from followed threads

  • Published: Nov 14, 2025
  • Updated: Nov 15, 2025
  • CVE: CVE-2025-41436
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 3.1
  • AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

CWEs: