Vulnerabilities (CVE)

Filtered by vendor Apache Subscribe
Filtered by product Jspwiki
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-10077 1 Apache 1 Jspwiki 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
A carefully crafted InterWiki link could trigger an XSS vulnerability on Apache JSPWiki 2.9.0 to 2.11.0.M3, which could lead to session hijacking.
CVE-2018-20242 1 Apache 1 Jspwiki 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
A carefully crafted URL could trigger an XSS vulnerability on Apache JSPWiki, from versions up to 2.10.5, which could lead to session hijacking.