CVE-2025-53857 | Mattermost Confluence Plugin up to 1.4.x API Endpoint GetChannelSubscriptions authorization
A vulnerability, which was classified as problematic, has been found in Mattermost Confluence Plugin up to 1.4.x. Affected by this issue is some unknown functionality of the file autocomplete/GetChannelSubscriptions of the component API Endpoint. The manipulation leads to missing authorization.
This vulnerability is handled as CVE-2025-53857. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.