216.73.216.6

CVE-2026-0636

· Published 15/04/2026 10:16 · Modified 15/04/2026 10:16

Labels: CVE-2026-0636 2026-04-1591579145-5d7b-4cc5-b925-a0262ff19630CVE-2026-0636CWE-90

Essential information

Published
15/04/2026 10:16
Modified
15/04/2026 10:16
Author
Creator
CVSS
5.5 MEDIUM (v3) 5.5 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Improper neutralization of special elements used in an LDAP query ('LDAP injection') vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (prov modules). This vulnerability is associated with program files LDAPStoreHelper. This issue affects BC-JAVA: from 1.74 before 1.84.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
91579145-5d7b-4cc5-b925-a0262ff19630
NVD
View on NVD

Affected products (CPE)

ProductCPE
legion of the bouncy castle / bcprov cpe:2.3:a:legion_of_the_bouncy_castle:bcprov:<1.84:*:*:*:*:*:*

References