Vulnerability Details CVE-2026-13608
A flaw in the libcurl SASL negotiation for LDAP authentication allows an
incomplete handshake sequence to be misinterpreted as a successful
cryptographic verification. An attacker executing a Man-in-the-Middle (MITM)
attack can inject a premature or shortcut response that bypasses complete peer
validation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 18.3%
CVSS Severity
CVSS v3 Score 7.4