Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

wso2

About This Vendor

wso2 is a technology vendor producing software and infrastructure products. As a software provider, wso2's broad product portfolio across multiple domains—including operating systems, cloud infrastructure, enterprise applications, databases, networking, and security tools—creates a large attack surface. Additionally, long support cycles, widespread deployment, and continuous feature development contribute to the accumulation of discovered vulnerabilities over time. Major vendors typically report higher CVE counts not necessarily due to inferior security, but because of greater exposure to security research, responsible disclosure practices, and the sheer complexity of maintaining multiple product lines and legacy systems. Regular security assessments and patching of wso2's products are critical for organizations running their software in production environments.

Vulnerability Trends for This Vendor

SecUtils has indexed 118 known vulnerabilities from wso2. This includes 12 critical-severity issues and 15 high-severity issues that represent significant risk. These vulnerabilities affect 35 distinct products across wso2's portfolio, demonstrating the breadth of the vendor's product ecosystem and the importance of comprehensive patch management strategies. Disclosure dates span from 2017 through 2026, reflecting sustained security scrutiny over multiple years. Organizations deploying wso2 products should maintain active vulnerability monitoring, prioritize critical patches, and implement compensating controls where patches cannot be applied immediately.

ID Date Published Last Modified Severity (CVSSv3) Severity (CVSSv2) Exploit Available
CVE-2016-4311 2017-02-17 2026-05-13 8.8 6.8 Likely
CVE-2016-4312 2017-02-17 2026-05-13 7.5 6.0 Unknown
CVE-2016-4314 2017-02-17 2026-05-13 4.9 4.0 Likely
CVE-2016-4315 2017-02-17 2026-05-13 5.7 3.5 Unknown
CVE-2016-4316 2017-02-17 2026-05-13 6.1 4.3 Likely
CVE-2016-4327 2017-02-17 2026-05-13 6.1 4.3 Likely
CVE-2017-14651 2017-09-21 2026-05-13 4.8 3.5 Unknown
CVE-2017-14995 2017-10-04 2026-05-13 6.1 4.3 Likely
CVE-2018-8716 2018-04-25 2024-11-21 5.4 3.5 Unknown
CVE-2018-20736 2019-03-21 2024-11-21 5.4 3.5 Unknown
CVE-2018-20737 2019-03-21 2024-11-21 5.4 3.5 Unknown
CVE-2019-6512 2019-05-14 2025-05-30 4.1 4.0 Likely
CVE-2019-6514 2019-05-14 2025-05-30 4.8 3.5 Unknown
CVE-2019-6515 2019-05-14 2025-05-30 5.3 5.0 Likely
CVE-2019-6516 2019-05-14 2025-05-30 5.8 5.0 Likely
CVE-2019-6513 2019-05-21 2025-05-30 5.4 5.5 Likely
CVE-2019-15108 2019-08-16 2024-11-21 4.8 3.5 Unknown
CVE-2019-18881 2019-11-12 2024-11-21 6.1 4.3 Likely
CVE-2019-18882 2019-11-12 2024-11-21 6.1 4.3 Likely
CVE-2019-19587 2019-12-05 2024-11-21 6.1 4.3 Likely
CVE-2019-20440 2020-01-28 2024-11-21 4.8 3.5 Unknown
CVE-2019-20441 2020-01-28 2024-11-21 4.8 3.5 Unknown
CVE-2019-20442 2020-01-28 2024-11-21 4.8 3.5 Unknown
CVE-2019-20443 2020-01-28 2024-11-21 4.8 3.5 Unknown
CVE-2019-20434 2020-01-28 2024-11-21 4.8 3.5 Unknown
CVE-2019-20435 2020-01-28 2024-11-21 4.8 3.5 Unknown
CVE-2019-20436 2020-01-28 2024-11-21 6.1 4.3 Likely
CVE-2019-20437 2020-01-28 2024-11-21 6.1 4.3 Likely
CVE-2019-20438 2020-01-28 2024-11-21 4.8 3.5 Unknown
CVE-2019-20439 2020-01-28 2024-11-21 4.8 3.5 Unknown
CVE-2019-10797 2020-02-19 2024-11-21 6.5 4.3 Likely
CVE-2020-11885 2020-04-17 2024-11-21 7.2 6.5 Likely
CVE-2020-12719 2020-05-08 2024-11-21 7.2 6.5 Likely
CVE-2020-13226 2020-05-20 2024-11-21 9.8 7.5 Likely
CVE-2020-13883 2020-06-06 2024-11-21 6.7 6.5 Likely
CVE-2020-14444 2020-06-18 2024-11-21 5.4 3.5 Unknown
CVE-2020-14445 2020-06-18 2024-11-21 5.4 3.5 Unknown
CVE-2020-14446 2020-06-18 2024-11-21 6.1 5.8 Likely
CVE-2020-24589 2020-08-21 2024-11-21 9.1 6.4 Likely
CVE-2020-24590 2020-08-21 2024-11-21 9.1 6.4 Likely
CVE-2020-24591 2020-08-21 2024-11-21 6.5 5.5 Likely
CVE-2020-24703 2020-08-27 2024-11-21 8.8 6.8 Likely
CVE-2020-24704 2020-08-27 2024-11-21 6.1 4.3 Likely
CVE-2020-24705 2020-08-27 2024-11-21 8.8 6.8 Likely
CVE-2020-24706 2020-08-27 2024-11-21 6.1 4.3 Likely
CVE-2020-17454 2020-10-21 2024-11-21 6.1 4.3 Likely
CVE-2020-25516 2020-10-29 2024-11-21 5.4 3.5 Unknown
CVE-2020-27885 2020-10-29 2024-11-21 6.1 4.3 Likely
CVE-2020-17453 2021-04-05 2024-11-21 6.1 4.3 Likely
CVE-2021-36760 2021-12-07 2024-11-21 6.1 4.3 Likely
CVE-2022-29464 2022-04-18 2025-11-07 9.8 10.0 Likely
CVE-2022-29548 2022-04-21 2024-11-21 4.6 4.3 Likely
CVE-2021-42646 2022-05-11 2024-11-21 9.1 6.4 Likely
CVE-2022-39809 2022-09-09 2024-11-21 6.1 - -
CVE-2022-39810 2022-09-09 2024-11-21 6.1 - -
CVE-2022-4520 2022-12-15 2024-11-21 3.5 - -
CVE-2022-4521 2022-12-15 2024-11-21 3.5 - -
CVE-2023-31664 2023-05-23 2025-01-31 6.1 - -
CVE-2023-6835 2023-12-15 2024-11-21 4.3 - -
CVE-2023-6836 2023-12-15 2024-11-21 4.6 - -
CVE-2023-6837 2023-12-15 2025-06-05 8.5 - -
CVE-2023-6838 2023-12-15 2024-11-21 6.1 - -
CVE-2023-6839 2023-12-15 2024-11-21 5.3 - -
CVE-2023-6911 2023-12-18 2024-11-21 4.8 - -
CVE-2024-2321 2025-02-27 2025-10-03 5.6 - -
CVE-2024-0392 2025-02-27 2025-10-06 5.4 - -
CVE-2024-5848 2025-02-27 2025-10-06 6.1 - -
CVE-2025-2905 2025-05-05 2025-10-16 9.1 - -
CVE-2024-6914 2025-05-22 2025-10-06 9.8 - -
CVE-2024-7103 2025-05-22 2025-10-06 4.6 - -
CVE-2024-7487 2025-05-22 2025-10-06 5.8 - -
CVE-2024-5962 2025-05-22 2025-10-06 6.1 - -
CVE-2024-7096 2025-05-30 2025-12-03 4.2 - -
CVE-2024-7097 2025-05-30 2025-10-06 4.3 - -
CVE-2024-1440 2025-06-02 2025-10-06 5.4 - -
CVE-2024-3509 2025-06-02 2025-10-06 4.3 - -
CVE-2024-7073 2025-06-02 2025-10-06 6.5 - -
CVE-2024-8008 2025-06-02 2025-10-06 5.2 - -
CVE-2024-3511 2025-06-23 2025-10-06 4.3 - -
CVE-2024-4598 2025-09-23 2026-01-09 6.5 - -
CVE-2025-4760 2025-09-23 2025-11-21 4.8 - -
CVE-2025-5717 2025-09-23 2025-11-21 6.8 - -
CVE-2024-6429 2025-09-23 2025-10-06 4.3 - -
CVE-2025-0663 2025-09-23 2025-10-06 6.8 - -
CVE-2025-0209 2025-09-23 2025-10-06 6.1 - -
CVE-2025-0672 2025-09-23 2025-10-03 3.3 - -
CVE-2025-1396 2025-09-26 2025-10-06 3.7 - -
CVE-2025-1862 2025-09-26 2025-10-06 6.7 - -
CVE-2025-10611 2025-10-16 2025-11-21 9.8 - -
CVE-2025-9152 2025-10-16 2025-10-21 9.8 - -
CVE-2025-9804 2025-10-16 2025-11-21 9.6 - -
CVE-2025-9955 2025-10-16 2025-10-21 5.7 - -
CVE-2025-5350 2025-10-24 2025-11-21 5.9 - -
CVE-2025-5605 2025-10-24 2025-11-21 4.3 - -
CVE-2025-3125 2025-11-05 2025-12-04 6.7 - -
CVE-2025-10713 2025-11-05 2025-12-04 6.5 - -
CVE-2025-10907 2025-11-05 2025-12-04 8.4 - -
CVE-2025-11093 2025-11-05 2026-01-09 8.4 - -
CVE-2025-5770 2025-11-05 2025-11-13 6.1 - -
CVE-2025-10853 2025-11-05 2025-11-13 5.2 - -
CVE-2025-6670 2025-11-18 2025-12-08 8.8 - -
CVE-2025-9312 2025-11-18 2025-12-08 9.8 - -
CVE-2025-12107 2026-02-19 2026-03-06 8.4 - -
CVE-2025-13590 2026-02-19 2026-02-20 9.1 - -
CVE-2024-1524 2026-02-24 2026-03-03 7.7 - -
CVE-2024-2374 2026-04-16 2026-04-23 7.5 - -
CVE-2024-10242 2026-04-16 2026-04-23 6.1 - -
CVE-2024-4867 2026-04-16 2026-04-23 5.4 - -
CVE-2024-8010 2026-04-16 2026-04-23 3.5 - -
CVE-2025-6024 2026-04-16 2026-04-23 6.1 - -
CVE-2025-12624 2026-04-16 2026-04-23 6.0 - -
CVE-2025-10503 2026-04-29 2026-05-01 6.1 - -
CVE-2024-0391 2026-05-11 2026-05-27 5.3 - -
CVE-2025-10908 2026-05-11 2026-05-27 7.3 - -
CVE-2025-8154 2026-05-11 2026-05-27 5.3 - -
CVE-2025-8325 2026-05-11 2026-05-27 6.3 - -
CVE-2025-10470 2026-05-11 2026-05-27 8.6 - -
CVE-2025-9973 2026-05-11 2026-05-27 6.4 - -

How SecUtils Normalizes Vendor Data

SecUtils aggregates National Vulnerability Database (NVD) and MITRE records for wso2 by normalizing vendor identifiers across diverse data sources, mapping vendor names to their associated product lines, and collecting all known vulnerabilities under a unified vendor context. For every CVE associated with wso2's products, we extract and structure Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) categories, CVSS severity metrics, and reference links to enable rapid vulnerability identification and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and vendor vulnerability tracking.