标题:XWiki Platform 安全漏洞
(CVE-2022-24819) Description:Xwiki Platform是法国Xwiki公司的一套用于创建Web协作应用程序的Wiki平台。 XWiki Platform存在安全漏洞,该漏洞源于无权查看 wiki 页面的访客用户仍然可以列出与 wiki 用户相关的文档。
Description
An unauthenticated user can retrieve a list of users and their full names through a publicly accessible URL in XWiki. The issue affects versions before 12.10.11, 13.4.4, and 13.9-rc-1.