Логотип exploitDog
bind:CVE-2023-29508
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-29508

Количество 2

Количество 2

nvd логотип

CVE-2023-29508

почти 3 года назад

XWiki Commons are technical libraries common to several other top level XWiki projects. A user without script rights can introduce a stored XSS by using the Live Data macro, if the last author of the content of the page has script rights. This has been patched in XWiki 14.10, 14.4.7, and 13.10.11.

CVSS3: 8.9
EPSS: Низкий
github логотип

GHSA-hmm7-6ph9-8jf2

почти 3 года назад

org.xwiki.platform:xwiki-platform-livedata-macro vulnerable to Basic Cross-site Scripting

CVSS3: 8.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-29508

XWiki Commons are technical libraries common to several other top level XWiki projects. A user without script rights can introduce a stored XSS by using the Live Data macro, if the last author of the content of the page has script rights. This has been patched in XWiki 14.10, 14.4.7, and 13.10.11.

CVSS3: 8.9
1%
Низкий
почти 3 года назад
github логотип
GHSA-hmm7-6ph9-8jf2

org.xwiki.platform:xwiki-platform-livedata-macro vulnerable to Basic Cross-site Scripting

CVSS3: 8.9
1%
Низкий
почти 3 года назад

Уязвимостей на страницу