Skip to main content

Vendor/product archive

apache / syncope CVEs

Beta · best-effort

24 CVEs tagged to apache / syncope7 Critical, 7 High, 10 Medium, 0 Low, 0 Unrated.

CVE-2026-63071

Published Jul 20, 2026

Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements for Implementations can create a malicious Groovy class co…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-62418

Published Jul 20, 2026

Low-privileged authenticated Server-Side Request Forgery (SSRF) vulnerability in Apache Syncope via Connectors and Resources check. This issue affects Apache Syncope: from 3.0…

CVSS 8.1 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-62183

Published Jul 20, 2026

Improper Privilege Management vulnerability in Apache Syncope. When: * the all-Java user workflow adapter is configured, or * the Flowable user workflow adapter is configured, b…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
25.1
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-57308

Published Jul 20, 2026

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Syncope. An administrator with adequate entitlements can achieve exec…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
28.9
Vendor/product tagsBeta · best-effort

CVE-2026-53421

Published Jul 20, 2026

Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements can achieve remote code execution through the connector…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-53405

Published Jul 20, 2026

Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements can import arbitrary BPMN process definitions via the REST…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-42797

Published May 25, 2026

Exposure of Sensitive Information Through Data Queries vulnerability in Apache Syncope. An administrator with adequate entitlements for Derived Schemas can create a malicious JEX…

CVSS 4.9 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-42782

Published May 25, 2026

Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements for Implementations can create a malicious Groovy class co…

CVSS 7.2 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-23795

Published Feb 3, 2026

Improper Restriction of XML External Entity Reference vulnerability in Apache Syncope Console. An administrator with adequate entitlements to create or edit Keymaster parameters v…

CVSS 4.9 · Medium
evidence mentions
3
Buzz score
28.9
Vendor/product tagsBeta · best-effort

CVE-2026-23794

Published Feb 3, 2026

Reflected XSS in Apache Syncope's Enduser Login page. An attacker that tricks a legitimate user into clicking a malicious link and logging in to Syncope Enduser could steal that u…

CVSS 6.8 · Medium
evidence mentions
3
Buzz score
28.9
Vendor/product tagsBeta · best-effort

CVE-2025-65998

Published Nov 24, 2025

Apache Syncope can be configured to store the user password values in the internal database with AES encryption, though this is not the default option. When AES is configured, th…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-57738

Published Oct 20, 2025

Apache Syncope offers the ability to extend / customize the base behavior on every deployment by allowing to provide custom implementations of a few Java interfaces; such implemen…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-45031

Published Oct 24, 2024

When editing objects in the Syncope Console, incomplete HTML tags could be used to bypass HTML sanitization. This made it possible to inject stored XSS payloads which would trigge…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-38503

Published Jul 22, 2024

When editing a user, group or any object in the Syncope Console, HTML tags could be added to any text field and could lead to potential exploits. The same vulnerability was found…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-11977

Published Sep 15, 2020

In Apache Syncope 2.1.X releases prior to 2.1.7, when the Flowable extension is enabled, an administrator with workflow entitlements can use Shell Service Tasks to perform malicio…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1961

Published May 4, 2020

Vulnerability to Server-Side Template Injection on Mail templates for Apache Syncope 2.0.X releases prior to 2.0.15, 2.1.X releases prior to 2.1.6, enabling attackers to inject ar…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-1959

Published May 4, 2020

A Server-Side Template Injection was identified in Apache Syncope prior to 2.1.6 enabling attackers to inject arbitrary Java EL expressions, leading to an unauthenticated Remote C…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-17557

Published May 4, 2020

It was found that the Apache Syncope EndUser UI login page prio to 2.0.15 and 2.1.6 reflects the successMessage parameters. By this mean, a user accessing the Enduser UI could exe…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-17186

Published Nov 6, 2018

An administrator with workflow definition entitlements can use DTD to perform malicious operations, including but not limited to file read, file write, and code execution.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2018-17184

Published Nov 6, 2018

A malicious user with enough administration entitlements can inject html-like elements containing JavaScript statements into Connector names, Report names, AnyTypeClass keys and P…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-1322

Published Mar 20, 2018

An administrator with user search entitlements in Apache Syncope 1.2.x before 1.2.11, 2.0.x before 2.0.8, and unsupported releases 1.0.x and 1.1.x which may be also affected, can…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-1321

Published Mar 20, 2018

An administrator with report and template entitlements in Apache Syncope 1.2.x before 1.2.11, 2.0.x before 2.0.8, and unsupported releases 1.0.x and 1.1.x which may be also affect…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3503

Published Jul 11, 2014

Apache Syncope 1.1.x before 1.1.8 uses weak random values to generate passwords, which makes it easier for remote attackers to guess the password via a brute force attack.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0111

Published Apr 17, 2014

Apache Syncope 1.0.0 before 1.0.9 and 1.1.0 before 1.1.7 allows remote administrators to execute arbitrary Java code via vectors related to Apache Commons JEXL expressions, "deriv…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-24 of 24 CVEsPage 1 of 1