Loading
Generated remediation guidance and an executive summary. No account required.
Mattermost Mobile versions <=2.22.0 fail to properly handle posts with attachments containing fields that cannot be cast to a String, which allows an attacker to cause the mobile to crash via creating and sending such a post to a channel.
Cite this page
CVE-2025-20630. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2025-20630
Use CWE-1287, Mattermost vendor hub and Mattermost Mobile product page to widen CVE-2025-20630 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-1558, CVE-2025-20072 and CVE-2025-21083 for nearby disclosures in the same product family.