Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Published: 17th August 2020

Version: 12.0.0

Severity: High

CVSS Score: 8.1 (CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N) 

...

AFFECTED PRODUCTS

WSO2 API Manager : 3.12.0 or earlier
WSO2 API Microgateway : 2.2.0
WSO2 IS as Key Manager : 5.10.0 or earlier
WSO2 Identity Server : 5.10.0 or earlier

...

You may also apply the relevant fixes based on the changes from the public fix: https://github.com/wso2-extensions/identity-user-ws/pull/44


Note: NOTES

If you are a WSO2 customer with Support Subscription, please use WSO2 Update Manager (WUM) updates in order to apply the fix.

Change Log:

2020-09-24: API Manager 3.2.0 added to the affected product list.