Description
Apache Wicket before 1.5.12, 6.x before 6.17.0, and 7.x before 7.0.0-M3 might allow remote attackers to obtain sensitive information via vectors involving identifiers for storing page markup for temporary user sessions.
Remediation
References
https://wicket.apache.org/news/2014/09/22/cve-2014-3526.html
Related Vulnerabilities
CVE-2023-0835 Vulnerability in npm package markdown-pdf
CVE-2020-11971 Vulnerability in maven package org.apache.camel:camel-main
CVE-2019-1003037 Vulnerability in maven package org.jenkins-ci.plugins:azure-vm-agents
CVE-2018-17145 Vulnerability in npm package bcoin
CVE-2021-27644 Vulnerability in maven package org.apache.dolphinscheduler:dolphinscheduler-server