home.social

#apachesyncope — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #apachesyncope, aggregated by home.social.

  1. My colleagues found a bug ..

    CVE-2026-23794 in the IAM solution Apache Syncope makes it possible to inject XSS payloads on the login page of Syncope Enduser. An attacker could send such a link to a victim and steal their password in plain text when they attempt to log in.

    securityblog.omegapoint.se/en/

    #ApacheSyncope #syncope #apache #cve