All 3 CVE vulnerabilities found in lemur, with AI-generated Chinese analysis, references, and POCs.
Vendor: Netflix
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-44305 | Lemur: LDAP TLS certificate verification globally disabled enables credential interception CWE-295 | 6.8 | Medium | 2026-05-12 |
| CVE-2026-44304 | Lemur: LDAP Filter Injection enables post-authentication privilege escalation CWE-90 | 8.1 | High | 2026-05-12 |
| CVE-2023-30797 | Insecure Random Generation in Netflix Lemur CWE-330 | 7.5 | High | 2023-04-19 |
All 3 known CVE vulnerabilities affecting lemur with full Chinese analysis, references, and POCs where available.