PT-2026-68629 · Wso2 · Wso2 Products

CVE-2024-6541

·

Published

2026-08-06

·

Updated

2026-08-31

CVSS v3.1

6.8

Medium

VectorAV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions WSO2 products (affected versions not specified)
Description The Class Mediator fails to correctly validate or sanitize messageContext properties when used to populate dynamic values. This allows authenticated users to potentially access or modify data across different system invocations that should be isolated, which may lead to the disclosure of sensitive information or unintended modification of system data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-6541

Affected Products

Wso2 Products