Known Vulnerabilities for Api Control Plane by Wso2
Listed below are 10 of the newest known vulnerabilities associated with "Api Control Plane" by "Wso2".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-90439 json | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_v3_module module. When using HTTP/3 with OpenSSL versio... | Not Provided | 2026-09-15 | 2026-09-16 |
| CVE-2026-86792 json | Apache Airflow Apache Kafka provider versions 1.15.0 before 2.0.0 resolve dotted-path strings found in a Kafka connection's `... | Not Provided | 2026-09-16 | 2026-09-17 |
| CVE-2026-84383 json | libheif is a HEIF and AVIF file format decoder and encoder. From 1.22.0 until 1.23.2, a crafted HEIF, HEIC, or AVIF item grap... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-82641 json | Keploy versions 3.1.0 through 3.6.25, fixed in 3.6.26, bind the agent control-plane HTTP server to all interfaces without aut... | Not Provided | 2026-08-30 | 2026-09-02 |
| CVE-2026-82473 json | KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS server without authentication verification. A... | Not Provided | 2026-08-29 | 2026-08-31 |
| CVE-2026-80693 json | In the Linux kernel, the following vulnerability has been resolved: idpf: bound interrupt-vector register fill to the alloca... | Not Provided | 2026-08-28 | 2026-08-29 |
| CVE-2026-78689 json | Description NGINX JavaScript (njs) has a vulnerability in the XML module's namespace prefix list parser, reachable through ... | Not Provided | 2026-09-02 | 2026-09-03 |
| CVE-2026-78222 json | A vulnerability exists in NGINX JavaScript where a malformed HTTP response received by ngx.fetch() can crash an NGINX worker ... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-77180 json | When NGINX Ingress Controller is configured with Ingress annotations, an injection vulnerability exists in the configuration ... | Not Provided | 2026-09-02 | 2026-09-03 |
| CVE-2026-76847 json | act starts an HTTP Artifacts V4 backend whenever a workflow uses actions/upload-artifact@v4 or actions/download-artifact@v4. ... | Not Provided | 2026-08-24 | 2026-08-26 |