{"id":"GHSA-w92j-c6gr-hj8r","summary":"Mattermost Confluence Plugin has Improper Check for Unusual or Exceptional Conditions","details":"Mattermost Confluence Plugin versions \u003c 1.5.0 fail to handle unexpected request bodies, allow\\ing attackers to crash the plugin via constant hits to the server webhook endpoint with an invalid request body.","aliases":["CVE-2025-53514","GO-2025-3871"],"modified":"2025-08-18T13:59:25.874742Z","published":"2025-08-11T21:31:40Z","database_specific":{"github_reviewed_at":"2025-08-11T23:23:42Z","nvd_published_at":"2025-08-11T19:15:29Z","cwe_ids":["CWE-754"],"severity":"MODERATE","github_reviewed":true},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-53514"},{"type":"PACKAGE","url":"https://github.com/mattermost/mattermost-plugin-confluence"},{"type":"WEB","url":"https://mattermost.com/security-updates"}],"affected":[{"package":{"name":"github.com/mattermost/mattermost-plugin-confluence","ecosystem":"Go","purl":"pkg:golang/github.com/mattermost/mattermost-plugin-confluence"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.5.0"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2025/08/GHSA-w92j-c6gr-hj8r/GHSA-w92j-c6gr-hj8r.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}