PT-2026-49243 · Mattermost · Mattermost

Game0V3R

·

Published

2026-06-15

·

Updated

2026-06-15

·

CVE-2026-8683

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Mattermost Desktop App versions <=6.1 5.5.13.0 fail to account for attempting to open extremely long URLs in the Mattermost Desktop App which allows a malicious server owner to crash the application via including a script to call window.open on a very large URL. Mattermost Advisory ID: MMSA-2026-00652

Fix

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

CVE-2026-8683

Affected Products

Mattermost