CVE-2024-56841: Siemens Mendix LDAP

High severity, CVSS 7.4. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability has been identified in Mendix LDAP (All versions < V1.1.2). Affected versions of the module are vulnerable to LDAP injection. This could allow an unauthenticated remote attacker to bypass username verification.

Affected products

  • Siemens Mendix LDAP: before V1.1.2 (fixed in V1.1.2)

Published 2025-01-14. Last modified 2026-06-17.