lemonldap-ng vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the lemonldap-ng package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2024-52948

*
  • L
CVE-2024-52946

<2.0.11+ds-4+deb11u6
  • L
CVE-2024-52947

<2.0.11+ds-4+deb11u6
  • M
Cross-site Scripting (XSS)

<2.0.11+ds-4+deb11u6
  • M
Server-Side Request Forgery (SSRF)

<2.0.11+ds-4+deb11u5
  • C
Improper Authentication

<2.0.11+ds-4+deb11u4
  • M
Insufficient Session Expiration

<2.0.11+ds-4+deb11u2
  • C
Improper Authentication

<2.0.11+ds-4+deb11u1
  • H
Improper Restriction of Excessive Authentication Attempts

<2.0.11+ds-4
  • L
CVE-2021-35473

<2.0.11+ds-4
  • C
Direct Request ('Forced Browsing')

<2.0.9+ds-1
  • H
Improper Certificate Validation

<2.0.9+ds-1
  • C
CVE-2019-19791

<2.0.7+ds-1
  • C
Incorrect Authorization

<2.0.6+ds-1
  • H
XML External Entity (XXE) Injection

<2.0.0+ds-1
  • C
Insufficiently Protected Credentials

<2.0.2+ds-7+deb10u1
  • H
Access Restriction Bypass

<1.2.2-3