Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update Mattermost Desktop App to versions 6.2.0, 5.13.6.0 or higher.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
Tue, 16 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mattermost mattermost Desktop
|
|
| CPEs | cpe:2.3:a:mattermost:mattermost_desktop:*:*:*:*:*:*:*:* cpe:2.3:a:mattermost:mattermost_desktop:*:-:*:*:*:*:*:* |
|
| Vendors & Products |
Mattermost mattermost Desktop
|
Tue, 16 Jun 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mattermost
Mattermost mattermost |
|
| Vendors & Products |
Mattermost
Mattermost mattermost |
Mon, 15 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Jun 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Mattermost Desktop App versions <=6.1 5.5.13.0 fail to account for attempting to open extremely long URLs in the Mattermost Desktop App which allows a malicious server owner to crash the application via including a script to call window.open on a very large URL. Mattermost Advisory ID: MMSA-2026-00652 | |
| Title | Overly long URLs crash the Mattermost Desktop App | |
| Weaknesses | CWE-770 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2026-06-15T16:06:03.652Z
Reserved: 2026-05-15T14:13:41.661Z
Link: CVE-2026-8683
Updated: 2026-06-15T16:05:35.592Z
Status : Analyzed
Published: 2026-06-15T16:16:34.700
Modified: 2026-06-16T17:18:55.223
Link: CVE-2026-8683
No data.
OpenCVE Enrichment
Updated: 2026-06-18T01:30:15Z