NONE · 0

CVE-2026-10549

LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to the...

Vulnerability Description

LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to the database.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-10549?

CVE-2026-10549 is a documented vulnerability. LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to the...

How severe is CVE-2026-10549?

CVSS scoring is not yet available for CVE-2026-10549. Check NVD for updates.

Is there a patch for CVE-2026-10549?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.