Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.2
CVE-2025-5717
- EPSS 0.64%
- Veröffentlicht 23.09.2025 16:15:33
- Zuletzt bearbeitet 21.11.2025 21:34:06
An authenticated remote code execution (RCE) vulnerability exists in multiple WSO2 products due to improper input validation in the event processor admin service. A user with administrative access to the SOAP admin services can exploit this flaw by d...
4.8
CVE-2025-4760
- EPSS 0.17%
- Veröffentlicht 23.09.2025 15:15:31
- Zuletzt bearbeitet 21.11.2025 21:29:56
An authenticated stored cross-site scripting (XSS) vulnerability exists in multiple WSO2 products due to improper validation of user-supplied input during API document upload in the Publisher portal. A user with publisher privileges can upload a craf...