Mattermost security updates 10.0.1 / 9.11.3 (ESR) / 9.5.11 (ESR) released

We’re informing you about a Mattermost security update, which addresses low- to medium-level severity vulnerabilities. We highly recommend that you apply the update.

The security update is available for Mattermost dot releases 10.0.1, 9.11.3 (Extended Support Release), and 9.5.11 (Extended Support Release), for both Team Edition and Enterprise Edition. They are available for download here.

Customer safety and data security are the utmost priorities for Mattermost. For our customers’ protection, and as outlined in our Responsible Disclosure policy, Mattermost does not disclose specifics on this vulnerability until 30 days after this announcement. After 30 days, we will publish specific details on the vulnerability on our Security Updates webpage.

The 9.11.3 and 9.5.11 versions also include the following fixes:

  • Fixed an issue with YouTube previews no longer being displayed.
  • Improved the performance of LDAP sync jobs when group-contained teams and channels are used.

The 9.5.11 version also includes the following fixes:

  • Pre-packaged Calls plugin v0.29.2.

You can follow the standard upgrade instructions to apply the updates.

The post Mattermost security updates 10.0.1 / 9.11.3 (ESR) / 9.5.11 (ESR) released appeared first on Mattermost.