#apachesyncope — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #apachesyncope, aggregated by home.social.
-
My colleagues found a bug ..
CVE-2026-23794 in the IAM solution Apache Syncope makes it possible to inject XSS payloads on the login page of Syncope Enduser. An attacker could send such a link to a victim and steal their password in plain text when they attempt to log in.
https://securityblog.omegapoint.se/en/writeup-apache-syncope-cve-2026-23794/
-
Apache Syncope Passwords at Risk from Newly Disclosed CVE-2025-65998 https://thecyberexpress.com/apache-syncope-cve-2025-65998-flaw/ #TheCyberExpressNews #Vulnerabilities #TheCyberExpress #FirewallDaily #AESEncryption #ApacheSyncope #Vulnerability #CVE202565998 #CyberNews