Local Privilege Escalation Vulnerability in Auth0 AD/LDAP Connector
CVE-2026-85983
7.8HIGH
What is CVE-2026-85983?
The Auth0 AD/LDAP Connector exhibits a vulnerability where improper handling of a configuration value during service startup could allow a low-privileged user on the host system to change the connector's configuration. Following a service restart, this altered configuration might enable code execution with the privileges held by the service account, potentially leading to significant security risks.
Affected Version(s)
Auth0 AD/LDAP Connector 0 <= 6.5.0
