By vendor

Lldap vulnerabilities

Known CVEs affecting Lldap products, prioritized by severity, with SEC.co remediation and detection guidance.

1 published vulnerability

  • CVE-2026-50889HIGH 7.5

    LLDAP version 0.6.2 contains a vulnerability in how it processes HTTP refresh tokens. An attacker can send a specially crafted refresh-token header that causes the application to stop responding, effectively taking it offline. No authentication is required—anyone with network access can attempt this attack. The vulnerability does not expose data or allow unauthorized access, but it can disrupt service availability.