An open API service providing security vulnerability metadata for many open source software ecosystems.

maven

org.xwiki.platform:xwiki-platform-web

maven

Security Advisories for org.xwiki.platform:xwiki-platform-web in maven

Critical
almost 2 years ago

XWiki Platform vulnerable to XSS with edit right in the create document form for existing pages GSA_kwCzR0hTQS05M2doLWpnamotcjkyOc4AA2sM

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago

XWiki users can be tricked to execute scripts as the create page action doesn't display the page's title GSA_kwCzR0hTQS1naGY2LTJmNDItbWpoOc4AA2sK

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
Critical
almost 2 years ago

XWiki Platform XSS vulnerability from account in the create page form via template provider GSA_kwCzR0hTQS1ncjgyLThmajItZ2djM84AA2sJ

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-web-standard, org.xwiki.platform:xwiki-platform-web-templates
Critical
over 2 years ago

XWiki vulnerable to stored cross-site scripting via any wiki document and the displaycontent/rendercontent template GSA_kwCzR0hTQS1mcDdoLWY5ZjUteDRxN84AAz9l

maven org.xwiki.platform:xwiki-platform-web-templates, org.xwiki.platform:xwiki-platform-web
High
over 2 years ago

Improper Neutralization of Script-Related HTML Tags (XSS) in the LiveTable Macro GSA_kwCzR0hTQS02dmdoLTlyM2MtMmN4cM4AAyu8

maven org.xwiki.platform:xwiki-web-standard, org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates, org.xwiki.platform:xwiki-platform-flamingo, org.xwiki.platform:xwiki-platform-flamingo-skin, org.xwiki.platform:xwiki-platform-flamingo-skin-resources
High
about 3 years ago

XWiki Platform Web Templates vulnerable to Missing Authorization, Exposure of Private Personal Information to Unauthorized Actor GSA_kwCzR0hTQS01OTl2LXc0OGgtcmpybc4AAu1h

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
High
about 3 years ago

XWiki Platform Web Templates vulnerable to Unauthorized User Registration Through the Distribution Wizard GSA_kwCzR0hTQS1oNWozLTV4NjMtcDhqds4AAu1K

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-web-templates
High
over 3 years ago

Improper escaping in XWiki Platform MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA5M2MtaDhxbS03MjU2

maven org.xwiki.platform:xwiki-platform-web
Moderate
over 3 years ago

Information exposure in xwiki-platform GSA_kwCzR0hTQS0zNWZnLWhqY3ItajY1Zs0p1g

maven org.xwiki.platform:xwiki-platform-web
Moderate
about 4 years ago

The reset password form reveal users email address MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWg0bTQtcGdwNC13aGdt

maven org.xwiki.platform:xwiki-platform-web
Critical
over 4 years ago

XSS Cross Site Scripting MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTVjNjYtdjI5aC14amg4

maven org.xwiki.platform:xwiki-platform-web, org.xwiki.platform:xwiki-platform-oldcore