VYPR

WorkFlow-Engine

by Rzymsoft

CVEs (1)

  • CVE-2026-102616HigSep 29, 2026
    risk 0.47cvss 7.3epss —

    A vulnerability was detected in risesoft-y9 WorkFlow-Engine up to 9.6.10. Impacted is the function getByIdAndYear of the file CustomHistoricProcessServiceImpl.java of the component OAuth2 Resource Filter. Performing a manipulation of the argument year/processInstanceId results…