CVE-2026-28811: Apache JSPWiki: Error Handling - Reveals Error Details
Debug Messages Revealing Unnecessary Information in Apache JSPWiki up to 2.12.3. Users are recommended to upgrade to version 2.12.4, which fixes this issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache JSPWikito a version that resolves this vulnerability.Fixed in 2.12.4
Event History
Frequently Asked Questions
What is the severity of CVE-2026-28811?
CVE-2026-28811 has a risk score of 18, indicating a significant vulnerability that could potentially expose sensitive information.
How do I fix CVE-2026-28811?
To resolve CVE-2026-28811, users should upgrade Apache JSPWiki to version 2.12.4 or later.
What type of information is revealed by CVE-2026-28811?
CVE-2026-28811 reveals unnecessary debug messages that can expose error details, compromising system security.
Which versions of Apache JSPWiki are affected by CVE-2026-28811?
Apache JSPWiki versions up to 2.12.3 are affected by CVE-2026-28811.
Is CVE-2026-28811 a common vulnerability in software?
While CVE-2026-28811 is specific to Apache JSPWiki, exposing error details is a common issue that can be found in various software systems.