Skip to content

CVE 2019 20435

nvd.nist.gov June 9, 2026

This CVE record has been updated after NVD enrichment efforts were completed. Enrichment data supplied by the NVD may require amendment due to these changes.

An issue was discovered in WSO2 API Manager 2.6.0. A reflected XSS attack could be performed in the inline API documentation editor page of the API Publisher by sending an HTTP GET request with a harmful docName request parameter.

Denotes Vulnerable Software Are we missing a CPE here? Please let us know .

Extracted Entities

Platforms (1)

Vulnerabilities (1)