References https://nvd.nist.gov/vuln/detail/cve-2023-46731 https://github.com/advisories/GHSA-62pr-qqf7-hh89 https://github.com/xwiki/xwiki-platform/commit/fec8e0e53f9fa2c3f1e568cc15b0e972727c803a https://jira.xwiki.org/browse/XWIKI-21110 https://security.snyk.io/vuln/SNYK-JAVA-ORGXWIKIPLATFORM-6048840 https://access.redhat.com/security/cve/cve-2023-46731 https://www.miggo.io/vulnerability-database/cve/CVE-2023-46731 https://vulert.com/vuln-db/CVE-2023-46731
Related VulnerabilitiesHepta Platforms|Heptabase - Stored Cross-Site ScriptingServiceNow-AI-Platform /assessment_thanks.do 代码执行漏洞(CVE-2026-6875)PoCCVE-2026-6875: ServiceNow AI Platform - Pre-Auth JavaScript Sandbox Escape RCEXWiki Platform /xwiki/bin/skin/ 目录遍历漏洞(CVE-2026-34151)XWiki /xwiki/rest/liveData/sources/liveTable/entries SQL 注入漏洞(CVE-2025-32429)Progress WhatsUp Gold /NmConsole/Platform/PerformanceMonitorErrors/HasErrors SQL 注入漏洞(CVE-2024-6670)PoCCVE-2026-20253: Splunk Enterprise & Cloud Platform - Unrestricted File UploadHepta Platforms|Heptabase - Exposed Dangerous Method or FunctionXWiki /bin/jsx/Main/WebHome 目录遍历漏洞(CVE-2026-23734)PoCCVE-2026-40105: XWiki - Cross-Site ScriptingXWiki存在XSS漏洞(CVE-2026-40105)万户 ezOFFICE /defaultroot/iWebOfficeSign/OfficeServer.jsp/../../platform/bpm/work_flow/operate/wf_relation.jsp SQL 注入漏洞PoCzqnb-educationcloud-exposure: ZhongQing Education Cloud Platform - Information Exposure