An issue was discovered in WSO2 API Manager 2.6.0. A potential stored Cross-Site Scripting (XSS) vulnerability has been identified in the inline API documentation editor page of the API Publisher.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-20438.json"