Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-8823

Mattermost versions 11.7.x <= 11.7.0, 10.11.x <= 10.11.17 fail to validate bot targets when demoting users to guests which allows a lower-privileged administrator to degrade arbitrary bot accounts via the standard demote-user API.. Mattermost Advisory ID: MMSA-2026-00669
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 13.8%
CVSS Severity
CVSS v3 Score 3.8


Contact Us

Shodan ® - All rights reserved