openwall.com
http://www.openwall.com/lists/oss-security/2026/07/30/14 CVE-2026-28811
HIGH
Apache JSPWiki: Error Handling - Reveals Error Details
Record summary
CVE-2026-28811 has a selected CVSS score of 7.5 (high).
Description
Debug Messages Revealing Unnecessary Information in Apache JSPWiki up to 2.12.3. Users are recommended to upgrade to version 2.12.4, which fixes this issue.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 31, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Apache JSPWikiBrowse Apache Software Foundation / Apache JSPWikiDefault status: unaffected | CVE List | Before up to 3.0.0 | affected |
References
4jspwiki-wiki.apache.org
https://jspwiki-wiki.apache.org/Wiki.jsp?page=CVE-2026-28811 lists.apache.orgVendor advisory
https://lists.apache.org/thread/2dm414zzjo3pvhjz6mvqy3b5yhvnkcg5 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-28811