CVE-2026-9064: unbounded LDAP controls count in get_ldapmessage_controls_ext() can lead to amplified CPU time and
heap allocation and a denial of service (bsc#1265898).
Changelog:
Issue 7503 - CVE-2026-9064 - Add a limit to the number controls per operation
Issue 7457 - Refactor memberOf perf test (#7458)
Issue 7431 - password policy - passwordBadWords is ignored in local policies