
CVE-2026-26246 Mattermost versions 11.3.x <= 11.3.0, 11.2.x <= 11.2.2, 10.11.x <= 10.11.10 fail to bound memory allocation when processing PSD image files which allows an authentica… https://www.cve.org/CVERecord?id=CVE-2026-26246
Post summary
CVE‑2026‑26246 is a memory‑bound allocation flaw in Mattermost versions 10‑11 that occurs when handling PSD files; no proof‑of‑concept, exploit, patch, or active exploitation information is provided.
