Vulnerability Description
LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to the database.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-10549?
CVE-2026-10549 is a documented vulnerability. LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to the...
How severe is CVE-2026-10549?
CVSS scoring is not yet available for CVE-2026-10549. Check NVD for updates.
Is there a patch for CVE-2026-10549?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.