Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-3109

Mattermost Plugins versions <=11.4 10.11.11.0 fail to validate webhook request timestamps which allows an attacker to corrupt Zoom meeting state in Mattermost via replayed webhook requests. Mattermost Advisory ID: MMSA-2026-00584
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 21.9%
CVSS Severity
CVSS v3 Score 2.2
Products affected by CVE-2026-3109


Contact Us

Shodan ® - All rights reserved