oss-security·1d ago highCVE-2026-82384: Apache Roller: Unauthenticated deserialization in the XML-RPC endpoint#apache#apache-roller#deserializationCVE-2026-82384 17 sources
oss-security·1d agoCVE-2026-82379: Apache Roller: WSSE digest authentication headers can be replayed#apache-roller#wsse#replay-attackCVE-2026-82379