GHSA-p279-2cqp-84jg
CRITICALCVE-2026-73644When a SASL PLAIN bind supplies an authorization identity (authzid) that resolves to a different user, PlainSASLMechanismHandler verified only the PROXIEDAUTH privilege and never evaluated the "proxy" access-control right (the mayProxy ACI scope check). As a result, any account holding the proxied-auth privilege could assume any resolvable non-root identity without being granted a proxy ACI for th
- Affected
- <= 5.1.1
- Fixed in
- 5.1.2
- Weakness
- CWE-285
- Published
- 2026-07-24
- Source
- github