CVE-2026-42568 LDAP Injection in YAMCS LdapAuthModule

Severity: Moderate CVSS 3.1: AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N Affected: yamcs-core < 5.12.7 and < 5.13.0 Fixed in: 5.12.7 / 5.13.0 Advisory: GHSA-cqh3-jg8p-336j Reporter: Daniel Miranda Barcelona (Excal1bur) Discovery date: 2026-04-20 Context If you’ve been following along, you already know YAMCS: the open-source mission…








