Vulnerabilities (CVE)

Filtered by vendor Wso2 Subscribe
Filtered by product Message Broker
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-6911 1 Wso2 9 Api Manager, Api Manager Analytics, Api Microgateway and 6 more 2024-02-28 N/A 4.8 MEDIUM
Multiple WSO2 products have been identified as vulnerable due to improper output encoding, a Stored Cross Site Scripting (XSS) attack can be carried out by an attacker injecting a malicious payload into the Registry feature of the Management Console.
CVE-2017-14651 1 Wso2 17 Api Manager, App Manager, Application Server and 14 more 2024-02-28 3.5 LOW 4.8 MEDIUM
WSO2 Data Analytics Server 3.1.0 has XSS in carbon/resources/add_collection_ajaxprocessor.jsp via the collectionName or parentPath parameter.