Exposure of XWiki
Wikis334
exposure score
39
sites use
1
exploited
121
critical
CVEs
245 resultsCVE-2025-32974CRITICALorg.xwiki.platform:xwiki-platform-security-requiredrights-default required rights analysis doesn't consider TextAreas with default content typeEPSS 0.3%CVE-2026-26000MEDIUMXWiki Platform affected by click-jacking through CSS injection in commentsEPSS 0.3%CVE-2022-41927HIGHXWiki Platform vulnerable to Cross-Site Request Forgery (CSRF) allowing to delete or rename tagsEPSS 0.3%CVE-2025-32783MEDIUMXWiki allows unregistered users to see "public" messages from a closed wiki via notifications from a different wikiEPSS 0.3%CVE-2025-49583MEDIUMXWiki provides no warning when granting XWiki.Notifications.Code.NotificationEmailRendererClass admin rightEPSS 0.2%
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →