CVE-2026-108598 - Floci 1.1.0 before 2.2.0 RCE via API Gateway VTL Mapping Templates
CVE ID :CVE-2026-108598 Published : Oct. 10, 2026, 7:16 p.m. | 13 minutes ago Description :Floci 1.1.0 before 2.2.0 contains a code injection vulnerability in VtlTemplateEngine that allows unauthenticated attackers to execute commands via unrestricted Velocity mapping templates. Attackers can...