VYPR

Maven package

org.xwiki.platform/xwiki-platform-flamingo-skin

pkg:maven/org.xwiki.platform/xwiki-platform-flamingo-skin

Vulnerabilities (1)

  • CVE-2023-29207Apr 15, 2023
    affected >= 1.9-milestone-2, < 13.10.10fixed 13.10.10

    XWiki Commons are technical libraries common to several other top level XWiki projects. The Livetable Macro wasn't properly sanitizing column names, thus allowing the insertion of raw HTML code including JavaScript. This vulnerability was also exploitable via the Documents Macro