Vendor
high
advisory
Authentication Bypass in Parse Server LDAP Adapter (CVE-2026-87806)
1 CVEParse Server versions before 8.6.88 and 9.10.1-alpha.7 contain an authentication bypass vulnerability in the LDAP adapter that allows attackers to perform account takeover via zero-length credentials.
Parse Server
authentication-bypass
cve-2026-87806
account-takeover
1c
high
advisory
Parse Server Denial of Service via Unindexed Database Query
2 rules 1 TTPAn unauthenticated attacker can cause a Denial of Service (DoS) by sending authentication requests with arbitrary, unconfigured provider names, leading to a full collection scan on the user database in vulnerable Parse Server versions.
Parse Server
parse-server
denial-of-service
webserver
2r
1t