JSON Hijacking Vulnerability in Apache JSPWiki Products
CVE-2026-28813
Currently unrated
What is CVE-2026-28813?
Apache JSPWiki, up to version 2.12.3, is susceptible to JSON Hijacking, which can lead to Cross-Site Request Forgery (CSRF) vulnerabilities. This issue allows attackers to manipulate JSON data and potentially hijack user sessions. It is highly recommended for users to upgrade to version 2.12.4 or later to resolve these security concerns effectively.
Affected Version(s)
Apache JSPWiki 0 < 2.12.4