CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.0. See the original NVD description below for full technical details.
CVE
CVE-2025-54458
Severity
MEDIUM
CVSS
5
EPSS
0.21%
Original NVD Description
Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the Confluence space which allows attackers to create a subscription for a Confluence space the user does not have access to via the create subscription endpoint.
Related CVEs
Other vulnerabilities affecting the same vendor(s)