CVE-2024-10214: Mattermost

Low severity, CVSS 3.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Mattermost versions 9.11.X <= 9.11.1, 9.5.x <= 9.5.9 icorrectly issues two sessions when using desktop SSO - one in the browser and one in desktop with incorrect settings.

Affected products

  • Mattermost Mattermost: from 9.5.0, up to and including 9.5.9; from 9.11.0, up to and including 9.11.1

Published 2024-10-28. Last modified 2026-06-17.