Critical WSO2 SOAP Vulnerability Let Attackers Reset Password for Any User Account

A critical security vulnerability in multiple WSO2 products has been discovered that allows attackers to reset passwords for any user account, potentially leading to complete system compromise.  CVE-2024-6914, published on May 22, 2025, represents a severe threat to organizations using WSO2’s enterprise software suite, with security researchers assigning it a maximum CVSS score of 9.8.  […]

The post Critical WSO2 SOAP Vulnerability Let Attackers Reset Password for Any User Account appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: