CVE-2026-91181 | Mattermost up to 10.11.22/11.7.7/11.8.4/11.9.0 Data Retention Teams Endpoint policies privileges management

SecurityVulns

A vulnerability was found in Mattermost up to 10.11.22/11.7.7/11.8.4/11.9.0. It has been declared as critical. The affected element is an unknown function of the file /api/v4/data_retention/policies of the component Data Retention Teams Endpoint. The manipulation results in improper privilege management.

This vulnerability is cataloged as CVE-2026-91181. The attack may be launched remotely. There is no exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More