CVE-2026-28813

ANALYSIS PENDING

Apache JSPWiki: JSPWiki vulnerable to JSON hijacking

Title source: cna
STIX 2.1

Description

Apache JSPWiki, up to 2.12.3, is vulnerable to JSON Hijacking, which leads to csrf vulnerabilities. Users are recommended to upgrade to version 2.12.4, which fixes this issue.

References (2)

Core 2

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-352
Status published
Products (1)
Apache Software Foundation/Apache JSPWiki < 2.12.4
Published Jul 30, 2026
Tracked Since Jul 30, 2026