CVE-2019-20434: XSS
An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has been identified in the Datasource creation page of the Management Console.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-20434?
CVE-2019-20434 is a potential Reflected Cross-Site Scripting (XSS) vulnerability in WSO2 API Manager 2.6.0.
How severe is CVE-2019-20434?
CVE-2019-20434 has a severity rating of 4.8, which is considered medium.
What is the affected software for CVE-2019-20434?
The affected software for CVE-2019-20434 is WSO2 API Manager 2.6.0.
How can I mitigate the CVE-2019-20434 vulnerability?
To mitigate the CVE-2019-20434 vulnerability, apply the provided security patches and updates from WSO2 API Manager.
Where can I find more information about CVE-2019-20434?
You can find more information about CVE-2019-20434 in the provided references: [1](https://cybersecurityworks.com/zerodays/cve-2019-20434-wso2.html), [2](https://docs.wso2.com/display/Security/Security+Advisory+WSO2-2019-0616), [3](https://github.com/cybersecurityworks/Disclosed/issues/17).