Mmastodon TechnologyCybersecurity first seen 6 h ago, last 6 h ago, peak #10
Critical LDAP injection flaw hits Red Hat Directory Server 11
Original: Red Hat Directory Server 11: CVE-2026-86345 (CRITICAL, CVSS 9) allows on-path attackers to inject LDAP messages post-Sta
A critical vulnerability, CVE-2026-86345 with a CVSS score of 9, has been disclosed in Red Hat Directory Server 11. It allows on-path attackers to inject LDAP messages after StartTLS negotiation, potentially leading to authentication bypass. Security teams are being urged to restrict access to affected servers and follow Red Hat's advisory for remediation guidance.
Why now: A newly disclosed critical vulnerability with authentication bypass risk is prompting urgent attention from security teams.
Red HatRed Hat Directory Server 11CVE-2026-86345
Evidence
- Red Hat Directory Server 11: CVE-2026-86345 (CRITICAL, CVSS 9) allows on-path attackers to inject LDAP messages post-StartTLS, risking auth bypass. Restrict access, check Red Hat advisory https:// radar.offseq.com/threat/cve-20… · offseq@infosec.exchange · 1
API: https://socialmediatrends-api.osmike.com/v1/trends/678214