PT-2025-42482 · Mattermost · Mattermost Desktop App

Doyensec

·

Published

2025-10-16

·

Updated

2025-10-16

·

CVE-2025-55035

CVSS v3.1

6.1

Medium

VectorAV:N/AC:H/PR:N/UI:R/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Mattermost versions prior to 5.13.0
Description The Mattermost Desktop App does not properly manage modals. This impacts users connecting to servers that utilize basic authentication, potentially preventing access. An attacker can provide a malicious server to a user, and upon configuration, force a modal popup that cannot be closed, effectively denying use of the Desktop App.
Recommendations Update to a version greater than 5.13.0.

Fix

DoS

Improper Check for Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-55035

Affected Products

Mattermost Desktop App