VulnSea

CWE-90

CVEs classified under CWE-90, newest first.

17 CVEsRSS

CVE-2026-53658Medium· 6.3
6d ago

Fabric CA is a Certificate Authority for Hyperledger Fabric

Fabric CA is a Certificate Authority for Hyperledger Fabric. Prior to 1.5.21, when fabric-ca is configured with an LDAP backend, Client.GetUser in lib/server/ldap/client.go inserts the username from HTTP Basic authentication into the LDA…

Sunlithyperledger · fabric-caEPSS 0.26%via NVD
CVE-2026-41573High· 7.1
6d ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, IdentityResourceV1.queryCollection() passes the _queryId parameter from /json/{realm}/users to CrestQuery with escapeQueryId disabled, bypassing protectio…

TwilightOpenIdentityPlatform · OpenAMEPSS 0.36%via NVD
CVE-2026-46619Critical· 9.3
6d ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, MSISDNValidation in the MSISDN authentication module concatenates the request-supplied MSISDN value into an LDAP search filter without escaping, while the…

MidnightOpenIdentityPlatform · OpenAMEPSS 0.58%via NVD
CVE-2026-55770Medium· 6.8PoC
6d ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, OpenBao used EscapeLDAPValue, an RFC 4514 distinguished-name escaping function, where RFC 4515 LDAP search-filter escaping was required in sdk/helper/lda…

Twilightopenbao · openbaoEPSS 0.45%via NVD
CVE-2026-11748Medium
1w ago

Central Dogma: LDAP injection in SearchFirstActiveDirectoryRealm enables authentication confusion and audit log evasion

Central Dogma: LDAP injection in SearchFirstActiveDirectoryRealm enables authentication confusion and audit log evasion

Sunlitlinecorp · com.linecorp.centraldogma:centraldogma-server-auth-shiroEPSS 0.62%via GHSA
CVE-2026-80055Medium· 4.4
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability. An unauthentic…

Sunlitdell · secure_connect_gatewayEPSS 0.21%via NVD
CVE-2026-78579Medium· 6.8
1w ago

The Okta Access Gateway does not sanitize SAML assertion attribute values before interpolating them into LDAP search filters in the LDAP datastore configuration

The Okta Access Gateway does not sanitize SAML assertion attribute values before interpolating them into LDAP search filters in the LDAP datastore configuration. The raw values are substituted directly into the filter string and passed t…

SunlitOkta · Okta Access GatewayEPSS 0.25%via NVD
CVE-2026-81205Medium· 5.3
2w ago

Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability in Drupal LDAP / Active Directory Integration allows LDAP Injection

Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability in Drupal LDAP / Active Directory Integration allows LDAP Injection. This issue affects LDAP / Active Directory Integration versions: from…

Sunlitminiorange · ldap_/_active_directory_integrationEPSS 0.33%via NVD
CVE-2026-19930Medium· 6.3
1mo ago

A security flaw has been discovered in Dolibarr up to 23.0.3

A security flaw has been discovered in Dolibarr up to 23.0.3. Affected is an unknown function of the file htdocs/user/card.php of the component User Cloning. The manipulation of the argument ID results in ldap injection. It is possible t…

SunlitEPSS 0.24%via NVD
CVE-2026-16071Medium· 5.4
1mo ago

A flaw was found in the LDAP storage provider of Keycloak, which is used to federate user identities from external directories

A flaw was found in the LDAP storage provider of Keycloak, which is used to federate user identities from external directories. The issue occurs when a delegated administrator performs a search using a specific LDAP entry Distinguished N…

Sunlitredhat · build_of_keycloakEPSS 0.23%via NVD
CVE-2026-59652None
1mo ago

In Bouncy Castle for Java before 1.85, LDAP filter injection in legacy jdk1.4 LDAPStoreHelper.

In Bouncy Castle for Java before 1.85, LDAP filter injection in legacy jdk1.4 LDAPStoreHelper.

SunlitEPSS 0.30%via NVD
CVE-2026-11770High· 7.5
1mo ago

A flaw was found in 389 Directory Server

A flaw was found in 389 Directory Server. An unauthenticated remote attacker can inject LDAP search filters into the CleanAllRUV replication status-check extended operation. Because the handler performs the search against cn=config with …

TwilightEPSS 0.53%via NVD
CVE-2026-47303High· 8.8
2mo ago

ASP.NET Core Elevation of Privilege Vulnerability

Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · .NET 10.0EPSS 0.74%via CVEORG
CVE-2026-49268HighPoC
3mo ago

Apache Shiro: LDAP DN Injection in DefaultLdapRealm

Apache Shiro: LDAP DN Injection in DefaultLdapRealm

Midnightapache · org.apache.shiro:shiro-coreEPSS 0.49%via GHSA
CVE-2026-0636Medium· 6.5
5mo ago

Improper neutralization of special elements used in an LDAP query ('LDAP injection') vulnerability in Legion of the Bouncy Castle Inc

Improper neutralization of special elements used in an LDAP query ('LDAP injection') vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (prov modules). This vulnerability is associated with program files LDAPStoreH…

SunlitLegion of the Bouncy Castle Inc. · bcprovEPSS 0.53%via NVD
CVE-2026-39962Critical· 9.6
5mo ago

MISP is an open source threat intelligence and sharing platform

MISP is an open source threat intelligence and sharing platform. Prior to 2.5.36, improper neutralization of special elements in an LDAP query in ApacheAuthenticate.php allows LDAP injection via an unsanitized username value when ApacheA…

MidnightEPSS 0.34%via NVD
CVE-2026-1498None
7mo ago

An LDAP Injection vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to retrieve sensitive information from a connected LDAP authentication server through an exposed authentication or management web inter…

An LDAP Injection vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to retrieve sensitive information from a connected LDAP authentication server through an exposed authentication or management web inter…

SunlitEPSS 0.87%via NVD
CWE-90 vulnerabilities (CVEs) · VulnSea