Mattermost Desktop App Help Menu Vulnerability Allowing Arbitrary Executable Execution

Vulnerability

A vulnerability exists in the Mattermost Desktop App in versions through 6.2.0 and 5.2.13.0, where the application fails to properly validate help links. This flaw enables a malicious Mattermost server to execute arbitrary executables on a user's system. The issue arises when a user clicks on specific items in the Help menu.

Impact

Exploitation of this vulnerability allows for the execution of arbitrary executables on the user's system, potentially leading to unauthorized actions or changes.

Remediation

Users can upgrade to Mattermost Desktop App version 6.4.0 or later to address this vulnerability.

Added: Feb 16, 2026, 2:03 PM
Updated: Feb 16, 2026, 2:03 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.2
remediation
0.0
relevance
2.9
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.