Vulnerabilities (CVE)

Filtered by vendor Wso2 Subscribe
Filtered by product Api Manager
Total 83 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-20737 1 Wso2 3 Api Manager, Identity Server, Identity Server As Key Manager 2026-06-17 3.5 LOW 5.4 MEDIUM
An issue was discovered in WSO2 API Manager 2.1.0 and 2.6.0. Reflected XSS exists in the carbon part of the product.
CVE-2018-20736 1 Wso2 1 Api Manager 2026-06-17 3.5 LOW 5.4 MEDIUM
An issue was discovered in WSO2 API Manager 2.1.0 and 2.6.0. A DOM-based XSS exists in the store part of the product.
CVE-2017-14651 1 Wso2 17 Api Manager, App Manager, Application Server and 14 more 2026-06-17 3.5 LOW 4.8 MEDIUM
WSO2 Data Analytics Server 3.1.0 has XSS in carbon/resources/add_collection_ajaxprocessor.jsp via the collectionName or parentPath parameter.