[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2026-22545":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-06T02:55:33.997Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":24,"downstream":25,"duplicates":28,"related":29,"reserved_at":9,"published_at":31,"modified_at":32,"state":33,"summary":34,"references_raw":42,"kevs":69,"epss":70,"epss_history":73,"metrics":318,"affected":331},"CVE-2026-22545","Mattermost versions 10.11.x \u003C= 10.11.10 fail to validate user's authentication method when processing account auth type switch which allows an authenticated attacker to change account password without confirmation via falsely claiming a different auth provider.. Mattermost Advisory ID: MMSA-2026-00583",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-863","Incorrect Authorization","The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.","weakness","Incomplete","Class","High",[],[],[22,23],"GHSA-rv67-7w2g-7976","GO-2026-4786",[],[26],{"_key":27},"SUSE-SU-2026:1135-1",[],[30],{"_key":27},"2026-03-16T14:54:45.344Z","2026-03-16T18:15:37.142Z","Analyzed",{"cisa_kev":35,"cisa_ransomware":35,"cisa_vendor":9,"epss_severity":36,"epss_score":37,"severity":36,"severity_score":38,"severity_version":39,"severity_source":40,"severity_vector":41,"severity_status":33},false,"low",0.00067,3.5,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N",[43,51,56,60,65],{"url":44,"sources":45,"tags":48},"https://mattermost.com/security-updates",[46,40,47],"cve.org","osv_go",[49,50],"Vendor Advisory","WEB",{"url":52,"sources":53,"tags":54},"https://nvd.nist.gov/vuln/detail/CVE-2026-22545",[47],[55],"Advisory",{"url":57,"sources":58,"tags":59},"https://github.com/mattermost/mattermost/commit/ced9a56e3988fe9fd4559d45f9971dbd562e2218",[47],[50],{"url":61,"sources":62,"tags":63},"https://github.com/mattermost/mattermost",[47],[64],"PACKAGE",{"url":66,"sources":67,"tags":68},"https://github.com/advisories/GHSA-rv67-7w2g-7976",[47],[55],[],{"date":71,"score":37,"percentile":72},"2026-06-05",0.20899,[74,78,81,85,88,91,95,98,101,104,107,110,113,116,119,122,125,128,131,134,137,140,143,146,149,153,156,159,162,165,168,171,175,178,181,184,187,190,193,196,199,202,205,208,211,214,217,220,222,225,228,231,234,237,240,243,246,249,252,255,258,261,263,266,269,272,275,278,281,284,287,290,293,296,299,302,305,308,311,314,317],{"date":75,"score":76,"percentile":77},"2026-03-17",0.00047,0.14197,{"date":79,"score":76,"percentile":80},"2026-03-18",0.142,{"date":82,"score":83,"percentile":84},"2026-03-19",0.00049,0.15034,{"date":86,"score":83,"percentile":87},"2026-03-20",0.15099,{"date":89,"score":83,"percentile":90},"2026-03-21",0.1524,{"date":92,"score":93,"percentile":94},"2026-03-22",0.0005,0.15454,{"date":96,"score":93,"percentile":97},"2026-03-23",0.15398,{"date":99,"score":93,"percentile":100},"2026-03-24",0.15388,{"date":102,"score":93,"percentile":103},"2026-03-25",0.15482,{"date":105,"score":93,"percentile":106},"2026-03-26",0.15565,{"date":108,"score":93,"percentile":109},"2026-03-27",0.1554,{"date":111,"score":93,"percentile":112},"2026-03-28",0.15575,{"date":114,"score":93,"percentile":115},"2026-03-29",0.15538,{"date":117,"score":93,"percentile":118},"2026-03-30",0.15502,{"date":120,"score":93,"percentile":121},"2026-03-31",0.15479,{"date":123,"score":93,"percentile":124},"2026-04-01",0.1551,{"date":126,"score":93,"percentile":127},"2026-04-02",0.15553,{"date":129,"score":93,"percentile":130},"2026-04-03",0.15582,{"date":132,"score":93,"percentile":133},"2026-04-04",0.15622,{"date":135,"score":93,"percentile":136},"2026-04-05",0.15601,{"date":138,"score":93,"percentile":139},"2026-04-06",0.15438,{"date":141,"score":93,"percentile":142},"2026-04-07",0.15421,{"date":144,"score":93,"percentile":145},"2026-04-08",0.15508,{"date":147,"score":93,"percentile":148},"2026-04-09",0.15558,{"date":150,"score":151,"percentile":152},"2026-04-10",0.00039,0.12044,{"date":154,"score":151,"percentile":155},"2026-04-11",0.12046,{"date":157,"score":151,"percentile":158},"2026-04-12",0.12008,{"date":160,"score":151,"percentile":161},"2026-04-13",0.11981,{"date":163,"score":151,"percentile":164},"2026-04-14",0.11835,{"date":166,"score":151,"percentile":167},"2026-04-15",0.11863,{"date":169,"score":151,"percentile":170},"2026-04-16",0.11854,{"date":172,"score":173,"percentile":174},"2026-04-17",0.00045,0.13826,{"date":176,"score":173,"percentile":177},"2026-04-18",0.13828,{"date":179,"score":173,"percentile":180},"2026-04-19",0.13782,{"date":182,"score":173,"percentile":183},"2026-04-20",0.13755,{"date":185,"score":173,"percentile":186},"2026-04-21",0.13899,{"date":188,"score":173,"percentile":189},"2026-04-22",0.13958,{"date":191,"score":173,"percentile":192},"2026-04-23",0.13971,{"date":194,"score":173,"percentile":195},"2026-04-24",0.1393,{"date":197,"score":173,"percentile":198},"2026-04-25",0.13923,{"date":200,"score":173,"percentile":201},"2026-04-26",0.13904,{"date":203,"score":173,"percentile":204},"2026-04-27",0.13886,{"date":206,"score":173,"percentile":207},"2026-04-28",0.13847,{"date":209,"score":173,"percentile":210},"2026-04-29",0.13836,{"date":212,"score":173,"percentile":213},"2026-04-30",0.1381,{"date":215,"score":173,"percentile":216},"2026-05-01",0.13779,{"date":218,"score":173,"percentile":219},"2026-05-02",0.13803,{"date":221,"score":173,"percentile":216},"2026-05-03",{"date":223,"score":173,"percentile":224},"2026-05-04",0.13722,{"date":226,"score":173,"percentile":227},"2026-05-05",0.13718,{"date":229,"score":173,"percentile":230},"2026-05-06",0.1372,{"date":232,"score":173,"percentile":233},"2026-05-07",0.13874,{"date":235,"score":173,"percentile":236},"2026-05-08",0.13901,{"date":238,"score":173,"percentile":239},"2026-05-09",0.13962,{"date":241,"score":173,"percentile":242},"2026-05-10",0.13959,{"date":244,"score":173,"percentile":245},"2026-05-11",0.13954,{"date":247,"score":173,"percentile":248},"2026-05-12",0.13997,{"date":250,"score":173,"percentile":251},"2026-05-13",0.14034,{"date":253,"score":173,"percentile":254},"2026-05-14",0.14092,{"date":256,"score":173,"percentile":257},"2026-05-15",0.14095,{"date":259,"score":173,"percentile":260},"2026-05-16",0.14102,{"date":262,"score":173,"percentile":257},"2026-05-17",{"date":264,"score":173,"percentile":265},"2026-05-18",0.14042,{"date":267,"score":173,"percentile":268},"2026-05-19",0.14023,{"date":270,"score":173,"percentile":271},"2026-05-20",0.14035,{"date":273,"score":173,"percentile":274},"2026-05-21",0.14014,{"date":276,"score":173,"percentile":277},"2026-05-22",0.14202,{"date":279,"score":37,"percentile":280},"2026-05-23",0.20631,{"date":282,"score":37,"percentile":283},"2026-05-24",0.20605,{"date":285,"score":37,"percentile":286},"2026-05-25",0.20577,{"date":288,"score":37,"percentile":289},"2026-05-26",0.20576,{"date":291,"score":37,"percentile":292},"2026-05-27",0.20659,{"date":294,"score":37,"percentile":295},"2026-05-28",0.20789,{"date":297,"score":37,"percentile":298},"2026-05-29",0.20838,{"date":300,"score":37,"percentile":301},"2026-05-30",0.20837,{"date":303,"score":37,"percentile":304},"2026-05-31",0.2083,{"date":306,"score":37,"percentile":307},"2026-06-01",0.20809,{"date":309,"score":37,"percentile":310},"2026-06-02",0.20813,{"date":312,"score":37,"percentile":313},"2026-06-03",0.20815,{"date":315,"score":37,"percentile":316},"2026-06-04",0.20824,{"date":71,"score":37,"percentile":72},[319,326,329],{"source":46,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":320,"cvss_v4_0":9},{"baseScore":321,"baseSeverity":322,"vectorString":323,"impactScore":324,"exploitabilityScore":325},3.1,"LOW","CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N",2.3,4.1,{"source":40,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":327,"cvss_v4_0":9},{"baseScore":38,"baseSeverity":322,"vectorString":41,"impactScore":324,"exploitabilityScore":328},5.4,{"source":47,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":330,"cvss_v4_0":9},{"baseScore":321,"baseSeverity":9,"vectorString":323,"impactScore":324,"exploitabilityScore":325},[332,362,368,373,381,390],{"ecosystem":333,"name":334,"vendor":335,"product":336,"cpe_part":9,"purl_type":337,"purl_namespace":335,"purl_name":336,"source":9,"versions":338},"Go","github.com/mattermost/mattermost-server","github.com/mattermost","mattermost-server","golang",[339,347,350,354,358],{"version":340,"is_range":341,"range_type":342,"version_start":343,"version_start_type":344,"version_end":345,"version_end_type":346,"fixed_in":9},"gte11_3_0_rc1+incompatible_lt11_3_1+incompatible",true,"semver","11.3.0-rc1+incompatible","including","11.3.1+incompatible","excluding",{"version":348,"is_range":341,"range_type":342,"version_start":9,"version_start_type":9,"version_end":349,"version_end_type":346,"fixed_in":9},"lt5_3_2_0_20260127144908_ced9a56e3988","5.3.2-0.20260127144908-ced9a56e3988",{"version":351,"is_range":341,"range_type":342,"version_start":352,"version_start_type":344,"version_end":353,"version_end_type":346,"fixed_in":9},"gte10_11_0_rc1_lt10_11_11","10.11.0-rc1","10.11.11",{"version":355,"is_range":341,"range_type":342,"version_start":356,"version_start_type":344,"version_end":357,"version_end_type":346,"fixed_in":9},"gte11_2_0_rc1_lt11_2_3","11.2.0-rc1","11.2.3",{"version":359,"is_range":341,"range_type":342,"version_start":360,"version_start_type":344,"version_end":361,"version_end_type":346,"fixed_in":9},"gte11_3_0_rc1_lt11_3_1","11.3.0-rc1","11.3.1",{"ecosystem":333,"name":363,"vendor":334,"product":364,"cpe_part":9,"purl_type":337,"purl_namespace":334,"purl_name":364,"source":9,"versions":365},"github.com/mattermost/mattermost-server/v5","v5",[366],{"version":367,"is_range":341,"range_type":342,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"all",{"ecosystem":333,"name":369,"vendor":334,"product":370,"cpe_part":9,"purl_type":337,"purl_namespace":334,"purl_name":370,"source":9,"versions":371},"github.com/mattermost/mattermost-server/v6","v6",[372],{"version":367,"is_range":341,"range_type":342,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":333,"name":374,"vendor":375,"product":376,"cpe_part":9,"purl_type":337,"purl_namespace":375,"purl_name":376,"source":9,"versions":377},"github.com/mattermost/mattermost/server/v8","github.com/mattermost/mattermost/server","v8",[378],{"version":379,"is_range":341,"range_type":342,"version_start":9,"version_start_type":9,"version_end":380,"version_end_type":346,"fixed_in":9},"lt8_0_0_20260127144908_ced9a56e3988","8.0.0-20260127144908-ced9a56e3988",{"ecosystem":9,"name":382,"vendor":383,"product":383,"cpe_part":384,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":385},"Mattermost","mattermost","a",[386],{"version":387,"is_range":341,"range_type":46,"version_start":388,"version_start_type":344,"version_end":389,"version_end_type":344,"fixed_in":9},">= 10.11.0, \u003C= 10.11.10","10.11.0","10.11.10",{"ecosystem":9,"name":391,"vendor":383,"product":392,"cpe_part":384,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":393},"mattermost server","mattermost_server",[394],{"version":395,"is_range":341,"range_type":396,"version_start":388,"version_start_type":344,"version_end":353,"version_end_type":346,"fixed_in":9},"gte10.11.0_lt10.11.11","cpe"]