A vulnerability classified as problematic has been found in Mattermost up to 10.11.17/11.5.5/11.6.2/11.7.0/11.7.x. This affects an unknown part of the component Websocket Connection Handler. Performing a manipulation results in session expiration.

This vulnerability was named CVE-2026-9162. The attack may be initiated remotely. There is no available exploit.

It is recommended to upgrade the affected component.