VYPR

Maven package

org.wso2.am/am-distribution-parent

pkg:maven/org.wso2.am/am-distribution-parent

Vulnerabilities (1)

  • CVE-2025-2905May 5, 2025
    affected < 2.1.0fixed 2.1.0

    Due to the improper configuration of XML parser, user-supplied XML is parsed without applying sufficient restrictions, enabling XML External Entity (XXE) resolution in multiple WSO2 Products. A successful XXE attack could allow a remote, unauthenticated attacker to: * Read se