Description
An issue was discovered in WSO2 Identity Server through 5.10.0 and WSO2 IS as Key Manager through 5.10.0. An open redirect exists.
Remediation
References
https://docs.wso2.com/display/Security/Security+Advisory+WSO2-2020-0713
https://cybersecurityworks.com/zerodays/cve-2020-14446-wso2.html
Related Vulnerabilities
CVE-2018-5382 Vulnerability in maven package org.bouncycastle:bcprov-jdk15on
CVE-2015-8856 Vulnerability in npm package serve-index
CVE-2017-7669 Vulnerability in maven package org.apache.hadoop:hadoop-common
CVE-2022-2576 Vulnerability in maven package org.eclipse.californium:californium-core
CVE-2019-14838 Vulnerability in maven package org.wildfly.core:wildfly-host-controller