CyberRota
Back to database

CVE-2026-4053

LOW · CVSS 3.1 EPSS 0.07%

Source: NVD + CISA KEV + EPSS · Published: 2026-05-15 · Last synced: 2026-06-09

CyberRota Analysis

Saldırganın giriş yapmış olması gerekebilir.

CVE
CVE-2026-4053
Severity
LOW
CVSS
3.1
EPSS
0.07%

Original NVD Description

Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to enforce the PostEditTimeLimit on non-message post fields which allows an authenticated user to modify post file attachments, props, and pin status after the edit window has expired via the post patch and update API endpoints.. Mattermost Advisory ID: MMSA-2026-00631