Where
-Infinity
0

Apache SyncopeApache Syncope: Low-privileged authenticated SSRF in Connectors and Resources check

Risk 63
Severity
8.1
First published (updated )

Apache SyncopeApache Syncope: User self-service privilege escalation

Risk 90
Severity
9.8
First published (updated )

Apache SyncopeApache Syncope: SQL injection vulnerability in Audit Events search

Risk 90
Severity
9.8
First published (updated )

Apache SyncopeApache Syncope: Remote Code Execution via Scripted Connector

Risk 90
Severity
9.8
First published (updated )

Apache SyncopeApache Syncope: Remote Code Execution via Flowable BPMN Groovy ScriptTask

Risk 90
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache SyncopeApache Syncope: RCE via Groovy Sandbox bypass

Risk 90
Severity
9.8
First published (updated )

oss-secCVE-2026-63071: Apache Syncope: RCE via Groovy Sandbox bypass

oss-secCVE-2026-62418: Apache Syncope: Low-privileged authenticated SSRF in Connectors and sources check

oss-secCVE-2026-62183: Apache Syncope: User self-service privilege escalation

oss-secCVE-2026-57308: Apache Syncope: SQL injection vulnerability in Audit Events search

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

oss-secCVE-2026-53421: Apache Syncope: mote Code Execution via Scripted Connector

oss-secCVE-2026-53405: Apache Syncope: mote Code Execution via Flowable BPMN Groovy ScriptTask

Apache Apache SyncopeApache Syncope: JexlContextBuilder Information Disclosure

Risk 31
Severity
4.9
First published (updated )

Apache SyncopeApache Syncope: Post-auth RCE via Groovy static

Risk 70
Severity
7.2
First published (updated )

Apache SyncopeApache Syncope: Console XXE on Keymaster parameters

Risk 23
Severity
4.9
EPSS
0.09%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache SyncopeApache Syncope: Reflected XSS on Enduser Login

Risk 29
Severity
6.8
EPSS
0.03%
First published (updated )

oss-secCVE-2026-23795: Apache Syncope: Console XXE on Keymaster parameters

oss-secCVE-2026-23794: Apache Syncope: flected XSS on Enduser Login

CVE-2024-45031: Apache Syncope: Stod XSS in Console and Enduser

First published (updated )

Apache SyncopeApache Syncope: HTML tags can be injected into Console or Enduser text fields

Risk 40
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

CVE-2024-38503: Apache Syncope: HTML tags can be injected into Console or Enduser text fields

First published (updated )

Apache SyncopeIn Apache Syncope 2.1.X releases prior to 2.1.7, when the Flowable extension is enabled, an administ…

Risk 72
Severity
8.5
First published (updated )

Apache SyncopeVulnerability to Server-Side Template Injection on Mail templates for Apache Syncope 2.0.X releases …

Risk 86
Severity
9.8
First published (updated )

Apache SyncopeXSS

Risk 34
Severity
5.4
First published (updated )

Apache SyncopeA Server-Side Template Injection was identified in Apache Syncope prior to 2.1.6 enabling attackers …

Risk 86
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache SyncopeXSS

Risk 34
Severity
5.4
First published (updated )

Apache SyncopeXEE

Risk 69
Severity
7.2
First published (updated )

Apache SyncopeInfoleak

Risk 31
Severity
4.9
First published (updated )

Apache SyncopeInput Validation

Risk 68
Severity
7.2
First published (updated )

Apache SyncopeWeak RNG

Risk 26
Severity
5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203