PT-2025-32576 · WordPress · Mattermost Confluence Plugin

Lorenzo Gallegos

·

Published

2025-07-10

·

Updated

2025-08-20

·

CVE-2025-52931

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Mattermost Confluence Plugin versions prior to 1.5.0
Description: The Mattermost Confluence Plugin is susceptible to a denial-of-service issue. Attackers can crash the plugin by repeatedly sending invalid request bodies to the update channel subscription endpoint.
Recommendations: Update the Mattermost Confluence Plugin to version 1.5.0 or later.

Fix

DoS

Improper Check for Exceptional Conditions

Weakness Enumeration

Related Identifiers

BDU:2025-09756
CVE-2025-52931
GHSA-VC77-C2HX-H5X2
GO-2025-3870
OPENSUSE-SU-2025:15469-1

Affected Products

Mattermost Confluence Plugin