CVE-2026-81205
Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability in Drupal LDAP / Active Directory Integration allows LDAP Injection. This issue affects LDAP / Active Directory Integration versions: from 0.0.0 to 2.2.1.
- Published Sep 2, 2026
- CVSS 5.3 medium
- 0.3% chance of exploitation in the next 30 days (EPSS)