Known vulnerabilities in WSO2 Oauth

Vendor: Jenkins
Software: WSO2 Oauth
Software CPE: cpe:2.3:a:jenkins:wso2_oauth:*:*:*:*:*:*:*:*
Total vulnerabilities: 5
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting WSO2 Oauth WSO2 Oauth is affected by 5 known vulnerabilities: 2 high, 3 low Critical High Medium Low

Vulnerabilities (5)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU109255 - Improper Authentication
CVE-2025-47889
CWE-287 High
No
No
- 16.05.2025 SB2025051617
#VU76411 - Cross-Site Request Forgery (CSRF)
CVE-2023-33006
CWE-352 Low
No
No
- 22.05.2023 SB2023052222
#VU76409 - Session Fixation
CVE-2023-33005
CWE-384 High
No
No
- 22.05.2023 SB2023052222
#VU75091 - Exposure of sensitive information to an unauthorized actor
CVE-2023-30528
CWE-200 Low
No
No
- 13.04.2023 SB2023041340
#VU75090 - Cleartext Storage of Sensitive Information
CVE-2023-30527
CWE-312 Low
No
No
- 13.04.2023 SB2023041340