Vulnerabilities > Xwiki

DATE CVE VULNERABILITY TITLE RISK
2024-04-10 CVE-2024-31988 Cross-Site Request Forgery (CSRF) vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-352
8.8
2024-04-10 CVE-2024-31996 Code Injection vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-94
critical
9.8
2024-04-10 CVE-2024-31465 Code Injection vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-94
8.8
2024-04-10 CVE-2024-31981 Missing Authorization vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-862
8.8
2024-04-10 CVE-2024-31982 Code Injection vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-94
critical
9.8
2024-04-10 CVE-2024-31983 Missing Authorization vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-862
8.8
2024-04-10 CVE-2024-31984 Code Injection vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-94
8.8
2024-04-10 CVE-2024-31464 Use of Password Hash With Insufficient Computational Effort vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-916
4.9
2024-02-21 CVE-2024-26138 Unspecified vulnerability in Xwiki Application Licensing
The XWiki licensor application, which manages and enforce application licenses for paid extensions, includes the document `Licenses.Code.LicenseJSON` that provides information for admins regarding active licenses.
network
low complexity
xwiki
5.3
2024-01-09 CVE-2024-21648 Unspecified vulnerability in Xwiki
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.
network
low complexity
xwiki
8.8