A vulnerability classified as problematic was found in Mattermost up to 9.11.11/10.4.4/10.5.2/10.6.1. Affected by this vulnerability is an unknown functionality of the component LDAP Lockout. The manipulation leads to overly restrictive account lockout mechanism.
This vulnerability is known as CVE-2025-31947. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.