CVE-2026-40459
Published Apr 17, 2026PAC4J is vulnerable to LDAP Injection in multiple methods. A low-privileged remote attacker can inject crafted LDAP syntax into ID-based search parameters, potentially resulting i…
- evidence mentions
- 2
- Buzz score
- 17.5