Junglewise Threat Intelligence

CVE-2025-12689: GO-2025-4255 - Mattermost fails to check Websocket request for proper UTF-8 format potentially crashing Calls plug-in in github.com/mattermost/mattermost-p

CVE-2025-12689 · Severity: low · CVSS 3.1 · Published 2025-12-30

Technologies: github.com/mattermost/mattermost-plugin-calls (Go). Vendors: Go.

Executive brief

Mattermost fails to check Websocket request for proper UTF-8 format potentially crashing Calls plug-in in github.com/mattermost/mattermost-plugin-calls

Affected products

  • Go github.com/mattermost/mattermost-plugin-calls

Related threats