PatchSiren

Mattermost CVE debriefs · Page 3

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW Mattermost CVE published 2026-03-26

CVE-2026-3109

CVE-2026-3109 is a low-severity vulnerability in Mattermost Plugins versions <=11.4 10.11.11.0. The vulnerability allows an attacker to corrupt Zoom meeting state in Mattermost via replayed webhook requests due to a failure to validate webhook request timestamps. The Common Vulnerability Scoring System (CVSS) score for this vulnerability is 2.2, indicating a low severity.