An open API service providing security vulnerability metadata for many open source software ecosystems.

maven

org.xwiki.platform:xwiki-platform-web-templates

maven

Security Advisories for org.xwiki.platform:xwiki-platform-web-templates in maven

Moderate
about 2 months ago

XWiki allows Reflected XSS in two templates GSA_kwCzR0hTQS1tOXg0LXc3cDktbXhoeM4ABKyB

maven org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago

XWiki Platform vulnerable to XSS with edit right in the create document form for existing pages GSA_kwCzR0hTQS05M2doLWpnamotcjkyOc4AA2sM

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago

XWiki users can be tricked to execute scripts as the create page action doesn't display the page's title GSA_kwCzR0hTQS1naGY2LTJmNDItbWpoOc4AA2sK

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago

XWiki Platform XSS vulnerability from account in the create page form via template provider GSA_kwCzR0hTQS1ncjgyLThmajItZ2djM84AA2sJ

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-web-standard, org.xwiki.platform:xwiki-platform-web-templates
Critical
over 2 years ago

XWiki vulnerable to stored cross-site scripting via any wiki document and the displaycontent/rendercontent template GSA_kwCzR0hTQS1mcDdoLWY5ZjUteDRxN84AAz9l

maven org.xwiki.platform:xwiki-platform-web-templates, org.xwiki.platform:xwiki-platform-web
Critical
over 2 years ago

xwiki-platform-web-templates vulnerable to Eval Injection GSA_kwCzR0hTQS1oZzV4LTN3M3gtN2c5Ns4AAy5v

maven org.xwiki.platform:xwiki-platform-web-templates
High
over 2 years ago

Improper Neutralization of Script-Related HTML Tags (XSS) in the LiveTable Macro GSA_kwCzR0hTQS02dmdoLTlyM2MtMmN4cM4AAyu8

maven org.xwiki.platform:xwiki-web-standard, org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates, org.xwiki.platform:xwiki-platform-flamingo, org.xwiki.platform:xwiki-platform-flamingo-skin, org.xwiki.platform:xwiki-platform-flamingo-skin-resources
Moderate
about 3 years ago

XWiki Cross-Site Request Forgery (CSRF) for actions on tags GSA_kwCzR0hTQS1meHdyLTR2cTktOXZoas4AAu2B

maven org.xwiki.platform:xwiki-platform-web-templates
High
about 3 years ago

XWiki Platform Web Templates vulnerable to Missing Authorization, Exposure of Private Personal Information to Unauthorized Actor GSA_kwCzR0hTQS01OTl2LXc0OGgtcmpybc4AAu1h

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
High
about 3 years ago

XWiki Platform Web Templates vulnerable to Unauthorized User Registration Through the Distribution Wizard GSA_kwCzR0hTQS1oNWozLTV4NjMtcDhqds4AAu1K

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Moderate
over 3 years ago

Unauthenticated user can retrieve the list of users through uorgsuggest.vm GSA_kwCzR0hTQS05N2pnLTQzYzktcTZwZs05dA

maven org.xwiki.platform:xwiki-platform-web-templates
High
over 3 years ago

Cross site scripting in registration template in xwiki-platform GSA_kwCzR0hTQS1neDZoLTkzNmMtdnJycs0p3Q

maven org.xwiki.platform:xwiki-platform-web-templates