Mattermost versions 10.5.x <= 10.5.8, 9.11.x <= 9.11.17 fail to properly validate access controls which allows any authenticated user to download sensitive files via board file download endpoint using UUID enumeration
{
"github_reviewed_at": "2025-09-22T18:00:01Z",
"cwe_ids": [
"CWE-639"
],
"severity": "LOW",
"nvd_published_at": "2025-09-19T20:15:40Z",
"github_reviewed": true
}