A vulnerability has been found in Mattermost up to 10.x and classified as problematic. This affects an unknown function of the component Multi-Factor Authentication. This manipulation causes missing authentication.

This vulnerability is handled as CVE-2025-55070. The attack can be initiated remotely. There is not any exploit available.

The affected component should be upgraded.