https://seclists.org/oss-sec/2026/q2/599: CVE-2026-41919: Apache OFBiz: Authentication Bypass due to Improper Neutralization of LDAP Special Elements in DN Construction
Published May 19, 2026
·Updated
Affected Software
1 affected component
Apache OFBiz<24.09.06
Frequently Asked Questions
1
What is the severity of CVE-2026-41919?
The severity of CVE-2026-41919 is moderate.
2
Which versions of Apache OFBiz are affected by CVE-2026-41919?
Apache OFBiz versions before 24.09.06 are affected by CVE-2026-41919.
3
What type of vulnerability is CVE-2026-41919?
CVE-2026-41919 is an authentication bypass vulnerability due to improper neutralization of LDAP special elements in DN construction.
4
How do I fix CVE-2026-41919?
To fix CVE-2026-41919, users should upgrade to Apache OFBiz version 24.09.06 or later.
5
What impact can CVE-2026-41919 have on my system?
CVE-2026-41919 can lead to unauthorized access due to authentication bypass, compromising the security of the system.