PT-2026-60737 · Mattermost · Mattermost Desktop App

·

CVE-2026-8075

·

Published

2026-07-17

·

Updated

2026-07-17

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Mattermost Desktop App versions 5.5.13 Mattermost Desktop App versions 6.0.2.0 Mattermost Desktop App versions prior to 6.3
Description The application fails to properly perform a null check when verifying headers. This allows a user to cause the application to crash for other channel members by posting a malicious link containing an embedded image that is missing one of the required headers.
Recommendations Update Mattermost Desktop App version 5.5.13 to a newer version. Update Mattermost Desktop App version 6.0.2.0 to a newer version. Update Mattermost Desktop App versions prior to 6.3 to a newer version.

Exploit

Fix

DoS

Improper Check for Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-8075

Affected Products

Mattermost Desktop App