Threats·Cloud & SaaSBreakingOpenBSD ldapd Asynchronous Response Race Allows Unauthorized Directory Session Hijacking (CVE-2026-103547)A race condition in OpenBSD ldapd delegated authentication allows remote attackers to hijack directory sessions and impersonate arbitrary user identities.CST Newsroom1 Oct 202611 min read