Executive brief
XWiki configuration files can be accessed through jsx and sx endpoints
Affected products
- Maven org.xwiki.platform:xwiki-platform-skin-skinx
Junglewise Threat Intelligence
CVE-2025-55748 · Severity: medium · CVSS 4 · Published 2025-09-03
Technologies: org.xwiki.platform:xwiki-platform-skin-skinx (Maven). Vendors: Maven.
XWiki configuration files can be accessed through jsx and sx endpoints