| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-23839 | SolarWinds Platform Exposure of Sensitive Information Vulnerability | SolarWinds | SolarWinds Platform | Medium | 6.5 | 2023-04-25 00:00:00 | Deep Dive |
| CVE-2022-36963 | SolarWinds Platform Deserialization of Untrusted Data Vulnerability | SolarWinds Platform Command Injection Vulnerability | SolarWinds Platform | High | 7.2 | 2023-04-21 00:00:00 | Deep Dive |
| CVE-2022-47505 | SolarWinds Platform Local Privilege Escalation Vulnerability | SolarWinds | SolarWinds Platform | High | 7.8 | 2023-04-21 00:00:00 | Deep Dive |
| CVE-2022-47509 | SolarWinds Platform Incorrect Input Neutralization Vulnerability | SolarWinds | SolarWinds Platform | Medium | 6.1 | 2023-04-21 00:00:00 | Deep Dive |
| CVE-2023-29517 | Exposure of Sensitive Information to an Unauthorized Actor in org.xwiki.platform:xwiki-platform-office-viewer | xwiki | xwiki-platform | High | 7.5 | 2023-04-18 23:54:13 | Deep Dive |
| CVE-2023-29516 | Code injection from view right on XWiki.AttachmentSelector in xwiki-platform | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:51:59 | Deep Dive |
| CVE-2023-29515 | Cross-site scripting (XSS) in xwiki-platform | xwiki | xwiki-platform | High | 7.7 | 2023-04-18 23:50:17 | Deep Dive |
| CVE-2023-29514 | Code injection in template provider administration in xwiki-platform | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:48:12 | Deep Dive |
| CVE-2023-29513 | Users can be created even when registration is disabled without validation via the template macro in xwiki-platform | xwiki | xwiki-platform | Medium | 5.0 | 2023-04-18 23:46:11 | Deep Dive |
| CVE-2023-29512 | Code injection in xwiki-platform-web-templates | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:44:26 | Deep Dive |
| CVE-2023-29510 | Code injection via unescaped translations in xwiki-platform | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:42:44 | Deep Dive |
| CVE-2023-29522 | Code injection from view right on XWiki.ClassSheet in xwiki-platform | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:38:23 | Deep Dive |
| CVE-2023-29521 | Code injection from account/view through VFS Tree macro in xwiki-platform | xwiki | xwiki-platform | High | 8.4 | 2023-04-18 23:36:17 | Deep Dive |
| CVE-2023-29520 | Page render failure due to broken translations in xwiki-platform | xwiki | xwiki-platform | Medium | 4.3 | 2023-04-18 23:33:41 | Deep Dive |
| CVE-2023-29519 | Code injection in org.xwiki.platform:xwiki-platform-attachment-ui | xwiki | xwiki-platform | Critical | 9.0 | 2023-04-18 23:31:09 | Deep Dive |
| CVE-2023-29518 | Code injection from view right using Invitation.InvitationCommon in xwiki-platform | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:29:33 | Deep Dive |
| CVE-2023-29523 | Code injection in display method used in user profiles in xwiki-platform | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:09:47 | Deep Dive |
| CVE-2023-29524 | Code injection from account through XWiki.SchedulerJobSheet in xwiki-platform | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:04:48 | Deep Dive |
| CVE-2023-29525 | Privilege escalation from view right on XWiki.Notifications.Code.LegacyNotificationAdministration in xwiki-platform | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 23:01:46 | Deep Dive |
| CVE-2023-29526 | Async and display macro allow displaying and interacting with any document in restricted mode | xwiki | xwiki-platform | Critical | 9.9 | 2023-04-18 22:57:30 | Deep Dive |