Unrated severityNVD Advisory· Published Feb 6, 2026· Updated Feb 9, 2026
DataHub's LDAP Ingestion Source vulnerable to MITM attack through TLS downgrade
CVE-2026-25644
Description
DataHub is an open-source metadata platform. Prior to version 1.3.1.8, the LDAP ingestion source is vulnerable to MITM attack through TLS downgrade. This issue has been patched in version 1.3.1.8.
Affected products
1- Range: < 1.3.1.8
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/datahub-project/datahub/security/advisories/GHSA-j34h-x7qg-4qw5mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.