CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-4339

mediumCVSS 6.5covered by 2 sourcesfirst seen 2026-05-29
Multiple vulnerabilities have been discovered in Mattermost products. They allow an attacker to cause data confidentiality breach, security policy bypass and an unspecified security issue by the editor.

CSIRTS triage

What
Multiple vulnerabilities in Mattermost products allow attackers to breach data confidentiality and bypass security policies through the editor.
Who is affected
All Mattermost product deployments are affected; specific versions are not stated.
Urgency
Moderate urgency; data confidentiality and policy bypass are serious but no active exploitation reported.
Action
Check Mattermost security advisory page for affected versions and apply available patches.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-4339

Get an email if CVE-2026-4339 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (2)

External references

NVD record for CVE-2026-4339

CVE.org record

Embed the live status

CVE-2026-4339 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-4339 status](https://www.csirts.com/badge/CVE-2026-4339)](https://www.csirts.com/cve/CVE-2026-4339)