Third Party Index

WSO2

wso2.com

Transparency

Minimal

Breakdown
Subprocessor listpublished; no entries could be read0 / 30
Processing locationsno list0 / 8
Purposesno list0 / 7
Data processing addendumnot found0 / 12
Trust centernot found0 / 8
Privacy policy6 / 6
security.txtnot found0 / 6
Security page5 / 5
Status pagenot found0 / 5
Vulnerability disclosure5 / 5
Pages still reachable8 / 8
Total24 / 100

Only documents we can retrieve count: a page behind a login or a broken link scores nothing.

Badge

WSO2 transparency rating

For WSO2's own site; it updates with the rating.

<a href="https://thirdpartyindex.com/vendors/wso2"><img src="https://thirdpartyindex.com/badge/wso2.svg" alt="WSO2 transparency rating on Third Party Index" height="20"></a>
[![WSO2 transparency rating on Third Party Index](https://thirdpartyindex.com/badge/wso2.svg)](https://thirdpartyindex.com/vendors/wso2)

Documents

DocumentVerifiedChangedEvidence
Subprocessor list snapshot
Privacy policy snapshot
Terms snapshot
Security page snapshot
Security advisories snapshot

Subprocessors

None extracted.

Security record

What public security catalogs list for WSO2, in their words.

Known exploited vulnerabilities

2 vulnerabilities in WSO2's software that CISA lists as exploited in the wild.

CVEProductVulnerabilityListed
CVE-2026-5430Multiple ProductsWSO2 Multiple Products Path Traversal Vulnerability evidence
CVE-2022-29464Multiple ProductsWSO2 Multiple Products Unrestrictive Upload of File Vulnerability used by ransomware evidence

Source: CISA Known Exploited Vulnerabilities catalog.

Changes

None since tracking began.