PAC4J is vulnerable to LDAP Injection in multiple methods. A low-privileged remote attacker can inject crafted LDAP syntax into ID-based…
CERT-PL·CWE-90·Published 2026-04-17