A vulnerability, which was classified as problematic, has been found in Mattermost up to 10.11.10/11.2.2/11.3.0. The affected element is an unknown function of the component POST Request Handler. This manipulation causes incorrect authorization.
This vulnerability is tracked as CVE-2026-4265. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.