CVE-2023-38509
- EPSS 0.36%
- Published 07.11.2023 04:17:20
- Last modified 21.11.2024 08:13:43
XWiki Platform is a generic wiki platform. In org.xwiki.platform:xwiki-platform-livetable-ui starting with version 3.5-milestone-1 and prior to versions 14.10.9 and 15.3-rc-1, the mail obfuscation configuration was not fully taken into account and is...
CVE-2023-46731
- EPSS 57.47%
- Published 06.11.2023 19:15:09
- Last modified 21.11.2024 08:29:10
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki doesn't properly escape the section URL parameter that is used in the code for displaying administration sections. This allows any user wit...
CVE-2023-46732
- EPSS 55.89%
- Published 06.11.2023 19:15:09
- Last modified 21.11.2024 08:29:11
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki is vulnerable to reflected cross-site scripting (RXSS) via the `rev` parameter that is used in the content of the content menu without esca...
CVE-2023-45137
- EPSS 1.7%
- Published 25.10.2023 21:15:10
- Last modified 21.11.2024 08:26:25
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. `org.xwiki.platform:xwiki-platform-web` starting in version 3.1-milestone-2 and prior to version 13.4-rc-1, as well as `org.xwiki.platform:xwiki-...
CVE-2023-45136
- EPSS 65.75%
- Published 25.10.2023 20:15:12
- Last modified 21.11.2024 08:26:25
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. When document names are validated according to a name strategy (disabled by default), XWiki starting in version 12.0-rc-1 and prior to versions 1...
- EPSS 4.81%
- Published 25.10.2023 20:15:11
- Last modified 21.11.2024 08:26:24
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. `org.xwiki.platform:xwiki-platform-web` starting in version 3.1-milestone-1 and prior to 13.4-rc-1, `org.xwiki.platform:xwiki-platform-web-templa...
- EPSS 4.81%
- Published 25.10.2023 20:15:11
- Last modified 21.11.2024 08:26:24
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In `org.xwiki.platform:xwiki-platform-web` versions 7.2-milestone-2 until 14.10.12 and `org.xwiki.platform:xwiki-platform-web-templates` prior to...
CVE-2023-37909
- EPSS 10.46%
- Published 25.10.2023 18:17:28
- Last modified 21.11.2024 08:12:26
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting in version 5.1-rc-1 and prior to versions 14.10.8 and 15.3-rc-1, any user who can edit their own user profile can execute arbitrary scri...
CVE-2023-37910
- EPSS 0.57%
- Published 25.10.2023 18:17:28
- Last modified 21.11.2024 08:12:27
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting with the introduction of attachment move support in version 14.0-rc-1 and prior to versions 14.4.8, 14.10.4, and 15.0-rc-1, an attacker ...
CVE-2023-37911
- EPSS 0.34%
- Published 25.10.2023 18:17:28
- Last modified 21.11.2024 08:12:27
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting in version 9.4-rc-1 and prior to versions 14.10.8 and 15.3-rc-1, when a document has been deleted and re-created, it is possible for use...