Homarr · Homarr · CVE-2025-67493
**Name of the Vulnerable Software and Affected Versions**
Homarr versions prior to 1.45.3
**Description**
A flaw exists in Homarr dashboard that, before version 1.45.3, could allow privilege escalation and access to other users' groups. This is due to insufficient input sanitization within the LDAP search query. An attacker with access to a user account could potentially exploit this issue in instances utilizing LDAP authentication.
**Recommendations**
Update to version 1.45.3 or later.