CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.0. See the original NVD description below for full technical details.
CVE
CVE-2025-59518
Severity
HIGH
CVSS
8
EPSS
1.19%
Original NVD Description
In LemonLDAP::NG before 2.16.7 and 2.17 through 2.21 before 2.21.3, OS command injection can occur in the Safe jail. It does not Localize _ during rule evaluation. Thus, an administrator who can edit a rule evaluated by the Safe jail can execute commands on the server.