VYPR

Opendj

by Openidentityplatform

Source repositories

CVEs (2)

  • CVE-2026-73644CriAug 13, 2026
    risk 0.55cvss 9.6epss

    OpenDJ is an LDAPv3 compliant directory service. Prior to 5.1.2, the SASL PLAIN authorization identity path in opendj-server-legacy/src/main/java/org/opends/server/extensions/PlainSASLMechanismHandler.java checked the PROXIED_AUTH privilege but did not evaluate the mayProxy…

  • CVE-2025-27497HigMar 5, 2025
    risk 0.50cvss epss 0.00

    OpenDJ is an LDAPv3 compliant directory service. OpenDJ prior to 4.9.3 contains a denial-of-service (DoS) vulnerability that causes the server to become unresponsive to all LDAP requests without crashing or restarting. This issue occurs when an alias loop exists in the LDAP…