CVE-2026-77147 | Apache Syncope up to 3.0.16/4.0.7/4.1.2 Groovy Command code injection
A vulnerability identified as problematic has been detected in Apache Syncope up to 3.0.16/4.0.7/4.1.2. The impacted element is an unknown function of the component Groovy Command. This manipulation causes code injection.
This vulnerability is handled as CVE-2026-77147. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More