Open banking km
This hub aggregates every CVE we track for Open banking km, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
8
CVEs tracked
5
Critical
0
High
1
In CISA KEV
Severity distribution
CRITICAL5MEDIUM3
Monthly trend
0
0
0
0
0
0
0
0
3
1
0
0
0
2
1
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 8 most recently published vulnerabilities affecting Open banking km.
- CVE-2025-9312Improper Certificate-Based Authentication Enforcement in Multiple WSO2 Products9.8
- CVE-2025-9804Improper Access Control in Multiple WSO2 Products via Internal SOAP Admin Services and System REST APIs9.6
- CVE-2025-10611Potential Broken Access Control in Multiple WSO2 Products via System REST APIs9.8
- CVE-2024-7073Unauthenticated Server-Side Request Forgery (SSRF) in Multiple WSO2 Products via SOAP Admin Services6.5
- CVE-2024-7097Incorrect Authorization in Multiple WSO2 Products via SOAP Admin Service Allowing Unauthorized User Signup4.3
- CVE-2024-7096Privilege Escalation in Multiple WSO2 Products via SOAP Admin Service Due to Business Logic Flaw4.2
- CVE-2024-6914Incorrect Authorization in Multiple WSO2 Products via Account Recovery SOAP Admin Service Leading to Account Takeover9.8
- CVE-2022-29464Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The attacker must use a /fileupload endpoint with a Content-Disposition directory traversal sequence to re...KEV9.8
Product normalization is registry-driven with AI assist and human review. How it works