org.xwiki.platform

231 tracked vulnerabilities.

CVE-2021-21379 HIGH
XWiki Platform 11.4-11.10.10 - Improper Preservation of Permissions in wikimacrocontent
Mar 12, 2021
CVSS 7.7
EPSS 0.00
CVE-2020-13654 HIGH
XWiki Platform <12.8 - Info Disclosure
Dec 31, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-15252 HIGH
XWiki < 11.10.6 - Authenticated Remote Code Execution via Servlet Context Access
Oct 16, 2020
CVSS 8.5
EPSS 0.03
CVE-2020-15171 MEDIUM
XWiki < 11.10.5 - Authenticated Remote Code Execution via Servlet Context Access
Sep 10, 2020
CVSS 6.6
EPSS 0.01
CVE-2018-16277 MEDIUM
XWiki < 10.7 - Stored Cross-Site Scripting via Image Import Function
Sep 28, 2018
CVSS 5.4
EPSS 0.00
CVE-2006-7223
XWiki 0.9.543-0.9.1252 - Authenticated Remote Code Execution via PreviewAction
Sep 14, 2007
EPSS 0.00