PT-2025-32577 · Mattermost · Mattermost Confluence Plugin

Lorenzo Gallegos

·

Published

2025-07-10

·

Updated

2025-08-20

·

CVE-2025-53514

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Mattermost Confluence Plugin versions prior to 1.5.0
Description: The Mattermost Confluence Plugin does not properly handle unexpected request bodies. Attackers can exploit this to crash the plugin by repeatedly sending invalid requests to the server webhook endpoint.
Recommendations: Update the Mattermost Confluence Plugin to version 1.5.0 or later.

Fix

DoS

Improper Check for Exceptional Conditions

Weakness Enumeration

Related Identifiers

BDU:2025-09762
CVE-2025-53514
GHSA-W92J-C6GR-HJ8R
GO-2025-3871
OPENSUSE-SU-2025:15469-1

Affected Products

Mattermost Confluence Plugin