Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6813 | XWiki Platform is a generic wiki platform. Prior to versions 13.10.5 and 14.3, it is possible to perform a Cross-Site Request Forgery (CSRF) attack for adding or removing tags on XWiki pages. The problem has been patched in XWiki 13.10.5 and 14.3. As a workaround, one may locally modify the `documentTags.vm` template in one's filesystem, to apply the changes exposed there. |
Github GHSA |
GHSA-fxwr-4vq9-9vhj | XWiki Cross-Site Request Forgery (CSRF) for actions on tags |
Wed, 23 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-23T17:12:55.116Z
Reserved: 2022-07-15T00:00:00.000Z
Link: CVE-2022-36095
Updated: 2024-08-03T09:52:00.553Z
Status : Modified
Published: 2022-09-08T21:15:07.870
Modified: 2024-11-21T07:12:22.553
Link: CVE-2022-36095
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA