Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-22449

Mattermost versions 9.11.x <= 9.11.5 fail to enforce invite permissions, which allows team admins, with no permission to invite users to their team, to invite users by updating the "allow_open_invite" field via making their team public.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.4%
CVSS Severity
CVSS v3 Score 3.8
Products affected by CVE-2025-22449


Contact Us

Shodan ® - All rights reserved