1. IQID: 29151 - Apache Syncope 4.0.6 audit events - 'orderby' SQL Injection (CVE-2026-57308) S
July 2026 - Security rule available
SQL Injection in Apache Syncope allows an administrator with adequate entitlemen...
2. IQID: 29150 - Apache Kylin 5.0.3 catalog_cache - 'table' SQL Injection (CVE-2026-62390) S
July 2026 - Security rule available
mproper Neutralization of Special Elements used in an SQL Command ('SQL Inj...
3. IQID: 29095 - K2 Joomla Component 2.26 index.php - 'attachment' File Upload (To Server) (CVE-2026-48946) S
July 2026 - Security rule available
The K2 frontend article-attachment upload path accepts files whose extension is ...
4. IQID: 29089 - K2 Joomla Component 2.26 index.php - 'attachment' File Upload (From Server) (CVE-2026-48946) S
July 2026 - Security rule available
The K2 frontend article-attachment upload path accepts files whose extension is ...
5. IQID: 29008 - Ivanti Sentry 10.5.1 handleMessage - 'message' OS Command Injection (CVE-2026-10520) S
June 2026 - Security rule available
An OS Command Injection vulnerability in Ivanti Sentry (formerly MobileIron Sent...
6. IQID: 28809 - Apache ActiveMQ Jolokia - Remote Code Execution (CVE-2026-34197) S
April 2026 - Security rule available
Improper Input Validation, Improper Control of Generation of Code ('Code In...
7. IQID: 28587 - Oracle Weblogic Server Proxy Plug-in - Remote Code Execution (CVE-2026-21962) S
January 2026 - Security rule available
Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in pr...
8. IQID: 28527 - Apache Struts - XXE Injection (CVE-2025-68493) S
January 2026 - Security rule available
Missing XML Validation vulnerability in Apache Struts, Apache Struts. This issue...
9. IQID: 28102 - Apache Camel via CAmelExecCommandArgs Header Injection (CVE-2025-29891) S
August 2025 - Security rule available
Bypass/Injection vulnerability in Apache Camel. This issue affects Apache Camel:...
10. IQID: 27909 - Apache CXF Aegis DataBinding Server-side Request Forgery (CVE-2024-28752) S
May 2025 - Security rule available
A SSRF vulnerability using the Aegis DataBinding in versions of Apache CXF befor...
Click a link below to query the library using one of these common search phrases.
© 2026 by IDappcom. Privacy policy. IDappcom Ltd, 6 Rural Enterprise Centre, Ludlow, Shropshire, SY8 1FF.