A AegiFlow
MEDIUMCVSS 4.3

CVE-2026-11785

CVE-2026-11785 updated by NVD

Modified
2026-07-25
Sources
nvd

Summary

A flaw was found in 389 Directory Server. A type confusion in the SSO token extended operation handler causes partial stack address information to be disclosed in LDAP responses to authenticated users.

References

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.