Critical
Low
Medium
CVE-2025-4760
Overview
An authenticated stored cross-site scripting (XSS) vulnerability exists in multiple WSO2 products due to improper validation of user-supplied input during API document upload in the Publisher portal. A user with publisher privileges can upload a crafted API document containing malicious JavaScript, ...
Critical
Low
Medium
No items found.