Executive brief
OpenDJ unauthenticated SSRF, local file read and unbounded-read DoS in the DSMLv2 gateway
Affected products
- Maven org.openidentityplatform.opendj:opendj-dsml-servlet
Junglewise Threat Intelligence
Severity: low · CVSS 3.1 · Published 2026-07-24
Vendors: Maven.
OpenDJ unauthenticated SSRF, local file read and unbounded-read DoS in the DSMLv2 gateway