Junglewise Threat Intelligence

CVE-2026-3113: GO-2026-5112 - Mattermost doesn't set permissions on downloaded bulk export in github.com/mattermost/mattermost-server

CVE-2026-3113 · Severity: low · CVSS 3.1 · Published 2026-06-25

Technologies: github.com/mattermost/mattermost-server (Go). Vendors: Go.

Executive brief

Mattermost doesn't set permissions on downloaded bulk export in github.com/mattermost/mattermost-server

Affected products

  • Go github.com/mattermost/mattermost-server

Related threats