AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-21251

CRITICAL · CVSS 9.8 EPSS 1.20%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-06-19 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-21251
Severity
CRITICAL
CVSS
9.8
EPSS
1.20%

Original NVD Description

An issue was discovered in Mattermost Server before 5.2 and 5.1.1. Authorization could be bypassed if the channel name were not the same in the params and the body.