Wso2 identity server analytics
This hub aggregates every CVE we track for Wso2 identity server analytics, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
4
CVEs tracked
2
Critical
0
High
1
In CISA KEV
Severity distribution
MEDIUM2CRITICAL2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 4 most recently published vulnerabilities affecting Wso2 identity server analytics.
- CVE-2025-9804Improper Access Control in Multiple WSO2 Products via Internal SOAP Admin Services and System REST APIs9.6
- CVE-2023-6911Multiple WSO2 products have been identified as vulnerable due to improper output encoding, a Stored Cross Site Scripting (XSS) attack can be carried out by an attacker injecting a malicious payload...4.8
- CVE-2022-29548A reflected XSS issue exists in the Management Console of several WSO2 products. This affects API Manager 2.2.0, 2.5.0, 2.6.0, 3.0.0, 3.1.0, 3.2.0, and 4.0.0; API Manager Analytics 2.2.0, 2.5.0, an...4.6
- CVE-2022-29464Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The attacker must use a /fileupload endpoint with a Content-Disposition directory traversal sequence to re...KEV9.8
Product normalization is registry-driven with AI assist and human review. How it works