CVE-2026-0636
ADVISORY - githubSummary
Improper neutralization of special elements used in an LDAP query ('LDAP injection') vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (prov modules). This vulnerability is associated with program files LDAPStoreHelper.
This issue affects BC-JAVA: from 1.74 before 1.84.
EPSS Score: 0.00047 (0.144)
Common Weakness Enumeration (CWE)
ADVISORY - nist
Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
ADVISORY - github
Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
NIST
CREATED
UPDATED
ADVISORY IDCVE-2026-0636
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
5.5mediumGitHub
CREATED
UPDATED
ADVISORY IDGHSA-c3fc-8qff-9hwx
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
5.5mediumUbuntu
CREATED
UPDATED
ADVISORY IDCVE-2026-0636
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-