
CVE-2026-26230 Mattermost versions 10.11.x <= 10.11.10 fail to properly validate permission requirements in the team member roles API endpoint which allows team administrators to de… https://www.cve.org/CVERecord?id=CVE-2026-26230
Post summary
The text announces CVE-2026-26230, noting that Mattermost versions 10.11.x <= 10.11.10 allow team administrators to bypass permission checks on the team member roles API, potentially enabling unauthorized actions.

