VYPR

Maven package

org.xwiki.platform/xwiki-platform-rendering-macro-context

pkg:maven/org.xwiki.platform/xwiki-platform-rendering-macro-context

Vulnerabilities (2)

  • CVE-2025-49582Jun 13, 2025
    affected >= 15.9-rc-1, < 16.4.7fixed 16.4.7

    XWiki is a generic wiki platform. When editing content that contains "dangerous" macros like malicious script macros that were authored by a user with fewer rights, XWiki warns about the execution of these macros since XWiki 15.9RC1. These required rights analyzers that trigger t

  • CVE-2023-26056Mar 2, 2023
    affected >= 3.0-milestone-1, < 13.10.10fixed 13.10.10

    XWiki Platform is a generic wiki platform. Starting in version 3.0-milestone-1, it's possible to execute a script with the right of another user, provided the target user does not have programming right. The problem has been patched in XWiki 14.8-rc-1, 14.4.5, and 13.10.10. There