GHSA-rm64-886x-w6qcMediumCVSS 6.5

Mattermost Desktop App versions <=6.2 5.5.13 6.0.2.0 fail to properly null check when checking...

Published
July 17, 2026
Last Modified
July 17, 2026

🔗 CVE IDs covered (1)

📋 Description

Mattermost Desktop App versions <=6.2 5.5.13 6.0.2.0 fail to properly null check when checking for headers in the Mattermost Desktop App which allows any user to crash another channel members Desktop App via posting a malicious link with an embedded image that misses one of those headers. Mattermost Advisory ID: MMSA-2026-00668

🔗 References (3)