[Git][security-tracker-team/security-tracker][master] Add new mattermost-server issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 18 08:25:07 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ed8069ee by Salvatore Bonaccorso at 2026-08-18T09:24:56+02:00
Add new mattermost-server issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,9 +1,9 @@
 CVE-2026-9859 (Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 1 ...)
-	TODO: check
+	- mattermost-server <itp> (bug #823556)
 CVE-2026-9816 (Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 1 ...)
-	TODO: check
+	- mattermost-server <itp> (bug #823556)
 CVE-2026-9693 (Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost f ...)
-	TODO: check
+	- mattermost-server <itp> (bug #823556)
 CVE-2026-75587 (Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-a ...)
 	TODO: check
 CVE-2026-75531 (Pandora contains a stored cross-site scripting (XSS) vulnerability in  ...)
@@ -287,7 +287,7 @@ CVE-2026-11817 (This vulnerability only affects Grafana stacks configured with m
 CVE-2026-11801 (The WPAdverts \u2013 Classifieds Plugin plugin for WordPress is vulner ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-10080 (Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 1 ...)
-	TODO: check
+	- mattermost-server <itp> (bug #823556)
 CVE-2026-9771 (The flash_copy() system call is verified by z_vrfy_flash_copy() in dri ...)
 	NOT-FOR-US: Zephyr, different from src:zephyr
 CVE-2026-75060 (In JetBrains PyCharm before 2026.2.1 code execution was possible via u ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ed8069ee84030ca8303245128c0941b5cee99ebf

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ed8069ee84030ca8303245128c0941b5cee99ebf
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260818/5c7d7ff2/attachment.htm>


More information about the debian-security-tracker-commits mailing list