Launchpad.net

CVE 2019-6513

An issue was discovered in WSO2 API Manager 2.6.0. It is possible for a logged-in user to upload, as API documentation, any type of file by changing the extension to an allowed one.

See the CVE page on Mitre.org for more details.