Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
Maven/org.xwiki.commons:xwiki-commons-xml — 6 CVEs · VulnScope
pkg:Maven/
org.xwiki.commons:xwiki-commons-xml
6 total CVEs
CRITICAL
5
MEDIUM
1
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.9
CVE-2023-26055
XWiki Platform may allow privilege escalation to programming rights via user's first name
>= 3.1-milestone-1, < 13.10.9
CRITICAL
9.0
CVE-2023-36471
org.xwiki.commons:xwiki-commons-xml's HTML sanitizer allows form elements in restricted
>= 14.6-rc-1, < 14.10.6
CRITICAL
9.0
CVE-2023-31126
Improper Neutralization of Invalid Characters in Data Attribute Names in org.xwiki.commons:xwiki-commons-xml
>= 14.6-rc-1, < 14.10.4
CRITICAL
9.0
Cross-site Scripting in org.xwiki.commons:xwiki-commons-xml
>= 4.2-milestone-1, < 14.10
CRITICAL
9.0
org.xwiki.commons:xwiki-commons-xml Cross-site Scripting vulnerability
>= 4.2-milestone-1, < 14.6-rc-1
MEDIUM
4.9
Arbitrary file access through XML parsing in org.xwiki.commons:xwiki-commons-xml
>= 2.7, < 12.10.10
CVE-2023-29528
CVE-2023-29201
CVE-2022-24898