Auth0 AD/LDAP Connector

3 known vulnerabilities in Auth0 AD/LDAP Connector, 1 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-85983 CVSS 7.8 high The Auth0 AD/LDAP Connector improperly processes a configuration value during service startup. This allows a low-privileged user on the…
  • CVE-2026-85982 CVSS 9.0 critical The Auth0 AD/LDAP Connector is vulnerable to stored Cross-Site Scripting (XSS) issues due to improper HTML encoding of data in search…
  • CVE-2026-85981 CVSS 6.7 medium The administrative panel of the Auth0 AD/LDAP Connector (versions 6.5.0 and earlier) listens on the local loopback interface without…