Apache · Apache Jspwiki · CVE-2026-28812
**Name of the Vulnerable Software and Affected Versions**
Apache JSPWiki versions prior to 2.12.4
**Description**
A lack of checks in the UserManager allows for impersonation, which may enable attackers to escalate privileges.
**Recommendations**
Upgrade to version 2.12.4 or newer.