Executive brief
XWiki Platform Stored Cross-site Scripting in the user profile via the timezone displayer
Affected products
- Maven org.xwiki.platform:xwiki-platform-web-templates
Junglewise Threat Intelligence
CVE-2023-40176 · Severity: low · CVSS 3.1 · Published 2023-08-21
Technologies: org.xwiki.platform:xwiki-platform-web-templates (Maven). Vendors: Maven.
XWiki Platform Stored Cross-site Scripting in the user profile via the timezone displayer