GHSA-4x3h-p6xh-h5x5Medium

LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote...

Published
June 2, 2026
Last Modified
June 2, 2026

🔗 CVE IDs covered (1)

📋 Description

LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to the database.

🔗 References (3)