AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-14298

MEDIUM · CVSS 6.5 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Certain versions of Mattermost are vulnerable to a denial of service due to improper resource consumption management when handling specific user-supplied input. This issue can be exploited by authenticated users, potentially disrupting service availability. Organizations using affected Mattermost versions should prioritize applying updates to mitigate this risk.

CVE
CVE-2026-14298
Severity
MEDIUM
CVSS
6.5
EPSS
0.24%

Original NVD Description

Mattermost versions 11.9.x <= 11.9.0, 11.8.x <= 11.8.4, 11.7.x <= 11.7.7, 10.11.x <= 10.11.22 fail to properly limit resource consumption when processing certain user-supplied input, which allows an authenticated user to cause a denial of service. Mattermost Advisory ID: MMSA-2026-00713