XWiki Commons Path Traversal via ssx/jsx Endpoints (GHSA-xq3r-2qv5-vqgm, CVE-2026-23734)
Security Advisory
GHSA-xq3r-2qv5-vqgm
Critical
XWiki
Affected:
- org.xwiki.commons:xwiki-commons-classloader-api 4.2-milestone-2
Fixed in:
- 18.0.0-rc-1
- 17.10.3
- 17.4.9
- 16.10.17
Referenced CVEs:
CVE-2026-23734
Top EPSS
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.