Description
Multiple WSO2 products have been identified as vulnerable due to lack of server-side input validation in the Forum feature, API rating could be manipulated.
Remediation
References
https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2021/WSO2-2021-1357/
Related Vulnerabilities
CVE-2020-1928 Vulnerability in maven package org.apache.nifi:nifi-web-api
CVE-2022-22984 Vulnerability in npm package snyk-python-plugin
CVE-2022-24858 Vulnerability in npm package next-auth
CVE-2018-14042 Vulnerability in maven package org.fujion.webjars:bootstrap
CVE-2022-23974 Vulnerability in maven package org.apache.pinot:pinot