Known Vulnerabilities for Spring-ldap by Pivotal Software
Listed below are 1 of the newest known vulnerabilities associated with "Spring-ldap" by "Pivotal Software".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-41720 json | Spring LDAP's DirContextAuthenticationStrategy implementations do not reject a bind request where a non-empty username is pai... | Not Provided | 2026-06-09 | 2026-06-23 |
| CVE-2017-8028 json | In Pivotal Spring-LDAP versions 1.3.0 - 2.3.1, when connected to some LDAP servers, when no additional attributes are bound, ... | 8.1 - HIGH | 2017-11-27 | 2021-01-20 |