Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 Maven

Apache Wicket Sensitive Data Exposure

GHSA-q7wx-mhx4-jr8q · CVE-2014-3526

Published · Modified

Description

Apache Wicket before 1.5.12, 6.x before 6.17.0, and 7.x before 7.0.0-M3 might allow remote attackers to obtain sensitive information via vectors involving identifiers for storing page markup for temporary user sessions.

Ready to move

Start Securing

Free, no credit card | First findings in minutes