Multiple WSO2 products have been identified as vulnerable due to lack of server-side input validation in the Forum feature, API rating could be manipulated.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "2.2.0"
},
{
"introduced": "0"
},
{
"last_affected": "2.5.0"
},
{
"introduced": "0"
},
{
"last_affected": "2.6.0"
}
]
}