OCTOBER 4, 2026
Live Feed
Back to database
Case File

CVE-2018-21251

CRITICAL · CVSS 9.8 EPSS 1.20%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-06-19 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.

CVE
CVE-2018-21251
Severity
CRITICAL
CVSS
9.8
EPSS
1.20%

Original NVD Description

An issue was discovered in Mattermost Server before 5.2 and 5.1.1. Authorization could be bypassed if the channel name were not the same in the params and the body.

Related CVEs

Other vulnerabilities affecting the same vendor(s)