VYPR

Maven package

org.xwiki.platform/xwiki-platform-legacy-notification-activitymacro

pkg:maven/org.xwiki.platform/xwiki-platform-legacy-notification-activitymacro

Vulnerabilities (1)

  • CVE-2023-29209Apr 15, 2023
    affected >= 10.9, < 13.10.11fixed 13.10.11

    XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with view rights on commonly accessible documents including the legacy notification activity macro can execute arbitrary Groovy, Python or Velocity code in XWiki leading to full acces