vulnerability

SUSE: CVE-2025-1412: SUSE Linux Security Advisory

Severity
4
CVSS
(AV:N/AC:M/Au:S/C:P/I:N/A:N)
Published
Nov 4, 2025
Added
Nov 4, 2025
Modified
Nov 4, 2025

Description

Mattermost versions 9.11.x <= 9.11.6, 10.4.x <= 10.4.1 fail to invalidate all active sessions when converting a user to a bot, with allows the converted user to escalate their privileges depending on the permissions granted to the bot.

Solution

suse-upgrade-govulncheck-vulndb
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.