Python Ldap is a Python library that provides LDAP client functionality for directory authentication and integration, maintaining a narrow product scope but positioned as a foundational component across Python-based identity and access systems. The observed vulnerability surface reflects the protocol-handling and input-validation demands inherent to LDAP client implementations. Current CVE counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Python Ldap over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-61911MEDIUM python-ldap is a lightweight directory access protocol (LDAP) client API for Python. In versions prior to 3.4.5, the sanitization method `ldap.filter.escape_filter_chars` can be tr | Oct 10, 2025 | 6.5 | 23 | NO | NO |
CVE-2021-46823MEDIUM python-ldap before 3.4.0 is vulnerable to a denial of service when ldap.schema is used for untrusted schema definitions, because of a regular expression denial of service (ReDoS) f | Jun 18, 2022 | 6.5 | 23 | NO | NO |
CVE-2025-61912MEDIUM python-ldap is a lightweight directory access protocol (LDAP) client API for Python. In versions prior to 3.4.5, ldap.dn.escape_dn_chars() escapes \x00 incorrectly by emitting a ba | Oct 10, 2025 | 5.3 | 21 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Python Ldap.
Media articles that mention a CVE ID that affects a product developed by Python Ldap — matched by CVE ID, not by vendor name.