CVE-2023-5876: Mattermost Desktop

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

Mattermost fails to properly validate a RegExp built off the server URL path, allowing an attacker in control of an enrolled server to mount a Denial Of Service.

Affected products

  • Mattermost Mattermost Desktop: before 5.5.1 (fixed in 5.5.1)

Published 2023-11-02. Last modified 2026-06-17.