← Back to CVE search

CVE-2026-8683

Mattermost Desktop App

Description

Mattermost Desktop App versions <=6.1 5.5.13.0 fail to account for attempting to open extremely long URLs in the Mattermost Desktop App which allows a malicious server owner to crash the application via including a script to call window.open on a very large URL. Mattermost Advisory ID: MMSA-2026-00652

CVSS 6.5EPSS 0.199%Risk 0.66
View source
Published
2026-06-15 16:16:34
Affected versions
cannotmatch
Type
Docker image
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H