Known Vulnerabilities for Ldap / Sso Authentication by Ldap Sso Authentication Project
Listed below are 10 of the newest known vulnerabilities associated with "Ldap / Sso Authentication" by "Ldap Sso Authentication Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-90961 json | The LdapAuth and LinOTPAuth authentication plugins in MISP contain an authentication bypass vulnerability. Both LdapAuthentic... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-87806 json | Parse Server versions <= 8.6.87 and >= 9.0.0 < 9.10.1-alpha.7 contain an authentication bypass in the built-in LDAP authentic... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86770 json | Snipe-IT before 8.7.0 fails to validate username case sensitivity during SAML authentication, allowing attackers to authentic... | Not Provided | 2026-09-09 | 2026-09-14 |
| CVE-2026-85981 json | The administrative panel of the Auth0 AD/LDAP Connector (versions 6.5.0 and earlier) listens on the local loopback interface ... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-85216 json | MISP contains an authentication bypass vulnerability in its LDAP and LinOTP authentication components due to insufficient val... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-82053 json | A security issue exists in MongoDB's LDAP authorization integration where pooled LDAP connections can retain stale authentica... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-78553 json | RansomLook created its Flask session-signing key without explicitly restricting the file permissions. The secret_key file was... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-78387 json | RansomLook contains an authorization weakness in the web-based configuration editor exposed through the /admin/config endpoin... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-76578 json | A flaw was found in FreeIPA. The self-managed OTP token ACI does not require authentication and does not restrict which attri... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-76208 json | phpMyFAQ versions 3.1.0 through 4.1.6 contain an authentication bypass vulnerability in AuthLdap::create(). When LDAP authent... | Not Provided | 2026-08-19 | 2026-08-19 |