Junglewise Threat Intelligence

CVE-2025-55748: XWiki configuration files can be accessed through jsx and sx endpoints

CVE-2025-55748 · Severity: medium · CVSS 4 · Published 2025-09-03

Technologies: org.xwiki.platform:xwiki-platform-skin-skinx (Maven). Vendors: Maven.

Executive brief

XWiki configuration files can be accessed through jsx and sx endpoints

Affected products

  • Maven org.xwiki.platform:xwiki-platform-skin-skinx

Related threats