Thomas Mortagne
37 exploits
Active since Feb 2022
XWiki Blog <9.15.7 - Stored XSS
CVSS 9.0
Xwiki < 13.0 - Incorrect Authorization
CVSS 5.4
Xwiki < 12.10.5 - Missing Authorization
CVSS 6.5
XWiki Platform - SSRF
CVSS 6.8
XWiki Platform - Info Disclosure
CVSS 5.5
Xwiki Commons < 12.10.10 - XXE
CVSS 4.9
XWiki Platform Flamingo Theme UI <12.10.11,14.0-rc-1,13.4.7,13.10.3...
CVSS 7.4
XWiki Platform Wiki UI Main Wiki <5.3-milestone-2 - XSS
CVSS 7.4
XWiki Platform <12.10.3,14.0 - Path Traversal
CVSS 2.7
XWiki Platform <12.10.11-14.0-rc-1-13.4.7-13.10.3 - XSS
CVSS 7.4
XWiki Platform <13.10.6 & <14.30-rc-1 - XSS
CVSS 8.9
XWiki Platform <13.10.6-14.3 - XSS
CVSS 8.9
Xwiki Openid Connect < 1.29.1 - Authentication Bypass
CVSS 9.1
Xwiki < 13.10.8 - Missing Authorization
CVSS 9.6
XWiki Platform <3.0-milestone-1 - Privilege Escalation
CVSS 5.4
XWiki Platform - DoS
CVSS 5.7
XWiki Platform <11.6-rc-1 - RCE
CVSS 9.9
XWiki Platform <14.9 - RCE
CVSS 9.9
XWiki Platform <2.3-milestone-1 - RCE
CVSS 9.9
Xwiki < 14.4.8 - Injection
CVSS 9.9
Xwiki < 14.10.4 - Incorrect Authorization
CVSS 9.9
XWiki Platform <2.2-14.4.8, <14.10.4, <15.0-rc-1 - XSS
CVSS 9.0
Xwiki < 14.10.5 - Incorrect Authorization
CVSS 9.9
XWiki Platform - RCE
CVSS 9.6
XWiki Platform - RCE
CVSS 9.9