CVE-2025-44004 | Mattermost Confluence Plugin up to 1.4.x Create Channel Subscription Endpoint missing authentication (WID-SEC-2025-1663)
A vulnerability identified as critical has been detected in Mattermost Confluence Plugin up to 1.4.x. Affected is an unknown function of the component Create Channel Subscription Endpoint. Performing manipulation results in missing authentication.
This vulnerability is identified as CVE-2025-44004. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.