Known Vulnerabilities for LDAP by Microsoft Corporation
Listed below are 10 of the newest known vulnerabilities associated with "LDAP" by "Microsoft Corporation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44305 json | Lemur manages TLS certificate creation. Prior to 1.9.0, when LDAP TLS is enabled (LDAP_USE_TLS = True), Lemur's LDAP authenti... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-44304 json | Lemur manages TLS certificate creation. Prior to 1.9.0, Lemur's LDAP authentication module (lemur/auth/ldap.py) constructs LD... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-40683 json | In OpenStack Keystone before 28.0.1, the LDAP identity backend does not convert the user enabled attribute to a boolean when ... | Not Provided | 2026-04-14 | 2026-04-14 |
| CVE-2026-40606 json | mitmproxy is a interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers and mitmweb is... | Not Provided | 2026-04-21 | 2026-04-22 |
| CVE-2026-40459 json | PAC4J is vulnerable to LDAP Injection in multiple methods. A low-privileged remote attacker can inject crafted LDAP syntax in... | Not Provided | 2026-04-17 | 2026-04-17 |
| CVE-2026-40193 json | maddy is a composable, all-in-one mail server. Versions prior to 0.9.3 contain an LDAP injection vulnerability in the auth.ld... | Not Provided | 2026-04-16 | 2026-04-16 |
| CVE-2026-39962 json | MISP is an open source threat intelligence and sharing platform. Prior to 2.5.36, improper neutralization of special elements... | Not Provided | 2026-04-09 | 2026-04-10 |
| CVE-2026-34578 json | OPNsense is a FreeBSD based firewall and routing platform. Prior to 26.1.6, OPNsense's LDAP authentication connector passes t... | Not Provided | 2026-04-09 | 2026-04-09 |
| CVE-2026-34339 json | Null pointer dereference in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to deny servic... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-34294 json | Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Microsoft Active Direc... | Not Provided | 2026-04-21 | 2026-04-22 |