CVE-2019-20440: XSS
Published Jan 27, 2020
·Updated
An issue was discovered in WSO2 API Manager 2.6.0. A potential Reflected Cross-Site Scripting (XSS) vulnerability has been identified in the update API documentation feature of the API Publisher.
Affected Software
1 affected component
WSO2 API Manager=2.6.0
Event History
Jan 27, 2020
CVE Published
via MITRE·11:37 PM
Data Sourced
via MITRE·11:37 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2019-20440?
The severity of CVE-2019-20440 is medium with a CVSS score of 4.8.
2
What is the affected software for CVE-2019-20440?
The affected software for CVE-2019-20440 is WSO2 API Manager 2.6.0.
3
What is the vulnerability of CVE-2019-20440?
CVE-2019-20440 is a potential Reflected Cross-Site Scripting (XSS) vulnerability in the update API documentation feature of the API Publisher in WSO2 API Manager 2.6.0.
4
How can I fix CVE-2019-20440?
To fix CVE-2019-20440, it is recommended to update to the latest version of WSO2 API Manager and follow the security advisory provided by WSO2.
5
Where can I find more information about CVE-2019-20440?
More information about CVE-2019-20440 can be found in the provided references: [link1], [link2], [link3].