299,038
Total vulnerabilities in the database
Apache Syncope 1.0.0 before 1.0.9 and 1.1.0 before 1.1.7 allows remote administrators to execute arbitrary Java code via vectors related to Apache Commons JEXL expressions, "derived schema definition," "user / role templates," and "account links of resource mappings."
| Software | From | Fixed in |
|---|---|---|
| apache / syncope | 1.0.0 | 1.0.9 |
| apache / syncope | 1.1.0 | 1.1.7 |