CVE-2026-105115 - OpenAM before 16.1.3 Unauthenticated Arbitrary Class Instantiation via JAX-RPC Interface
CVE ID :CVE-2026-105115 Published : Oct. 3, 2026, 2:16 p.m. | 1 hour, 8 minutes ago Description :OpenAM before 16.1.3 contains an unauthenticated arbitrary class instantiation vulnerability in the legacy JAX-RPC SOAP interface that allows remote attackers to load classes without...