> Debian Lemonldap-ng Access Bypass Vulnerabilities Details DSA-6520-1
[DATE: 27/09/2026 17:23]
[LANGUAGE: EN]
Multiple security vulnerabilities were discovered in the Lemonldap::NG web SSO system, which could result in a bypass of access controls, authorisation bypass in setups using PKCE or information disclosure. For the stable distribution (trixie), these problems have been fixed in version 2.21.2+ds-1+deb13u4.