Skip to content

CVE-2019-20435

CVE

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
June 8, 2026
Last Seen
June 8, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A reflected cross-site scripting (XSS) vulnerability, identified as CVE-2019-20435, was discovered in WSO2 API Manager version 2.6.0. This vulnerability allows attackers to exploit the inline API documentation editor page of the API Publisher by sending a malicious HTTP GET request with a harmful 'd...

Public Exploits

Checking GitHub for proof-of-concept code…