Multiple WSO2 products have been identified as vulnerable due to an XML External Entity (XXE) attack abuses a widely available but rarely used feature of XML parsers to access sensitive information.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WSO2

Published: 2023-12-15T09:26:01.323Z

Updated: 2024-08-02T08:42:08.180Z

Reserved: 2023-12-15T09:25:13.205Z

Link: CVE-2023-6836

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-12-15T10:15:09.407

Modified: 2023-12-19T13:52:56.807

Link: CVE-2023-6836

cve-icon Redhat

No data.