CVE-2026-66391
MEDIUM
NVD
CVSS Score
6.5
Severity
MEDIUM
Published
Jul 27, 2026
Vendor
unknown
Description
Use of Insufficiently Random Values, Protection Mechanism Failure vulnerability in Apache Wicket. This issue affects Apache Wicket: from 9.0.0 through 9.23.0, from 10.0.0 through 10.9.0. Users are recommended to upgrade to version 10.10.0, which fixes the issue.