CVE-2025-31510
EUVD-2026-290516.01.2026, 18:16
In the portal in LemonLDAP::NG before 2.21.0, cross-site scripting (XSS) allows remote attackers to inject arbitrary web script or HTML (into the login page) via the tab parameter, for Choice authentication.
Awaiting analysis
This vulnerability is currently awaiting analysis.
Debian Releases