A vulnerability was found in Legion of the Bouncy Castle BC-JAVA up to 1.83 and classified as critical. This vulnerability affects unknown code of the file LDAPStoreHelper.java. The manipulation results in ldap injection.

This vulnerability is known as CVE-2026-0636. It is possible to launch the attack remotely. No exploit is available.

It is suggested to upgrade the affected component.