|
171
|
6.8 |
MEDIUM
Network
|
-
|
-
|
Amazon Athena is a serverless, interactive query service that lets you analyze data directly in Amazon S3 using standard SQL. Athena Query Federation is a feature that allows you to connect to data s…
Update
|
CWE-89
SQL Injection
|
CVE-2026-12283
|
2026-07-21 02:14 |
2026-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
172
|
5.5 |
MEDIUM
Local
|
-
|
-
|
AWS HealthOmics is a HIPAA-eligible service that fully manages the compute, storage, and workflow engine infrastructure required to run bioinformatics analyses at scale for clinical diagnostics, drug…
Update
|
CWE-23
Relative Path Traversal
|
CVE-2026-15415
|
2026-07-21 02:14 |
2026-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
173
|
7.8 |
HIGH
Local
|
-
|
-
|
Acrobat Reader is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user int…
Update
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-48373
|
2026-07-21 02:14 |
2026-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
174
|
7.5 |
HIGH
Network
|
-
|
-
|
Uncontrolled Resource Consumption vulnerability in Apache Traffic Server.
This issue affects Apache Traffic Server: from 9.0.0 through 9.1.13, from 10.0.0 through 10.1.2.
Users are recommended to u…
Update
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-59173
|
2026-07-21 02:14 |
2026-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
175
|
- |
|
-
|
-
|
Improper Isolation or Compartmentalization vulnerability in Apache Syncope.
An administrator with adequate entitlements can import arbitrary BPMN process definitions via the REST API and then start …
New
|
CWE-653
Improper Isolation or Compartmentalization
|
CVE-2026-53405
|
2026-07-21 02:14 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
176
|
- |
|
-
|
-
|
Improper Isolation or Compartmentalization vulnerability in Apache Syncope.
An administrator with adequate entitlements can achieve remote code execution through the connector subsystem by relying…
New
|
CWE-653
Improper Isolation or Compartmentalization
|
CVE-2026-53421
|
2026-07-21 02:14 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
177
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Syncope.
An administrator with adequate entitlements can achieve execution of arbitrary S…
New
|
CWE-89
SQL Injection
|
CVE-2026-57308
|
2026-07-21 02:14 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
178
|
- |
|
-
|
-
|
Low-privileged authenticated Server-Side Request Forgery (SSRF)
vulnerability in Apache Syncope via Connectors and Resources check.
This issue affects Apache Syncope: from 3.0.0-M0 through 3.0.16…
New
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-62418
|
2026-07-21 02:14 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
179
|
- |
|
-
|
-
|
Improper Isolation or Compartmentalization vulnerability in Apache Syncope.
An administrator with adequate entitlements for Implementations can create a malicious Groovy class containing untrusted c…
New
|
CWE-653
Improper Isolation or Compartmentalization
|
CVE-2026-63071
|
2026-07-21 02:14 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
180
|
- |
|
-
|
-
|
Improper Privilege Management vulnerability in Apache Syncope.
When:
* the all-Java user workflow adapter is configured, or
* the Flowable user workflow adapter is configured, bearing a BPMN defini…
New
|
CWE-269
Improper Privilege Management
|
CVE-2026-62183
|
2026-07-21 02:14 |
2026-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|