Information Disclosure in Multiple WSO2 Products Due to Improper Handling in Enrich Mediator
No sign of exploitation. No public exploitation artifact known so far.
A vulnerability in WSO2 products allows authenticated users to see sensitive business data from other message flows due to improper isolation in the enrich mediator. This can leak private information processed by the system, though user passwords and security tokens remain protected.
The enrich mediator in multiple WSO2 products fails to properly isolate or reset internal state between mediation executions, allowing authenticated attackers to access sensitive business data from other mediation contexts via CWE-1259 (Improper Restriction of Rendered UI Layers or Frames). The vulnerability requires valid authentication and affects data confidentiality but not credential exposure.