CVE-2021-3137
XWiki 12.10.2 allows XSS via an SVG document to the upload feature of the comment section.
Cross-site Scripting
Vendor | Product | Version |
---|---|---|
xwiki | xwiki | 12.10.2 |
Common Weakness Enumeration
XWiki 12.10.2 allows XSS via an SVG document to the upload feature of the comment section.
Vendor | Product | Version |
---|---|---|
xwiki | xwiki | 12.10.2 |