Security Advisories (2)
CVE-2021-35472 (2021-07-30)

An issue was discovered in LemonLDAP::NG before 2.0.12. Session cache corruption can lead to authorization bypass or spoofing. By running a loop that makes many authentication attempts, an attacker might alternately be authenticated as one of two different users.

CVE-2021-35473

OAuth2 handler does not verify access token validity

Modules

Perl extension for managing Lemonldap::NG Web-SSO system.
Perl extension to manage Lemonldap::NG notifications
Perl extension to manage Lemonldap::NG sessions

Provides

in lib/Lemonldap/NG/Manager/Downloader.pm
in lib/Lemonldap/NG/Manager/Request.pm
in lib/Lemonldap/NG/Manager/Uploader.pm
in lib/Lemonldap/NG/Manager/_Struct.pm
in lib/Lemonldap/NG/Manager/_i18n.pm

Examples