CVE-2026-3115 | Mattermost up to 10.11.10/11.2.2/11.3.1/11.4.0 Group Retrieval Endpoint authorization
A vulnerability classified as problematic was found in Mattermost up to 10.11.10/11.2.2/11.3.1/11.4.0. Affected is an unknown function of the component Group Retrieval Endpoint. The manipulation results in incorrect authorization.
This vulnerability is reported as CVE-2026-3115. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.