Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
Maven/org.xwiki.platform:xwiki-platform-attachment-ui — 4 CVEs · VulnScope
pkg:Maven/
org.xwiki.platform:xwiki-platform-attachment-ui
4 total CVEs
CRITICAL
2
HIGH
2
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.9
CVE-2023-29516
XWiki Platform vulnerable to privilege escalation from view right on XWiki.AttachmentSelector
>= 2.0-rc-2, < 13.10.11
CRITICAL
9.9
CVE-2022-41928
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') in AttachmentSelector.xml
>= 5.0-milestone-1, < 13.10.7
HIGH
8.9
CVE-2022-36097
XWiki Platform Attachment UI vulnerable to cross-site scripting in the move attachment form
>= 14.0-rc-1, < 14.4-rc-1
HIGH
8.8
org.xwiki.platform:xwiki-platform-attachment-ui vulnerable to Code Injection
>= 3.0-rc-1, < 13.10.11
CVE-2023-29519