Improper Outbound Network Access in WSO2 API Manager
CVE-2020-13226
9.8CRITICAL
What is CVE-2020-13226?
WSO2 API Manager version 3.0.0 has a vulnerability that fails to adequately restrict outbound network access from a Publisher node. This flaw can potentially allow an attacker to exploit Server-Side Request Forgery (SSRF) to access resources within the internal network, thereby posing a significant risk to the integrity and security of the entire intranet.