Loading
Generated remediation guidance and an executive summary. No account required.
Mattermost versions 10.11.x <= 10.11.9 fail to enforce invite permissions when updating team settings, which allows team administrators without proper permissions to bypass restrictions and add users to their team via API requests. Mattermost Advisory ID: MMSA-2025-00561
Cite this page
CVE-2025-14573. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2025-14573
Use CWE-862, Mattermost vendor hub and Mattermost Server product page to widen CVE-2025-14573 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-3108, CVE-2026-28741 and CVE-2026-3112 for nearby disclosures in the same product family.