XWiki News Articles
Recent news articles refferecing the vendors vulnerabilities.
Hackers Hijack Corporate XWiki Servers for Crypto Mining
A critical security flaw is being actively exploited by cybercriminals to compromise corporate XWiki servers for cryptomining. This is an urgent threat targeting unpatched installations of the open-source...
1 week ago
CISA Warns of XWiki Platform Injection vulnerability Exploited to Execute Remote Code
CISA has issued an urgent warning about a severe injection vulnerability in the XWiki Platform, designated as CVE-2025-24893.
1 week ago
CISA Warns of XWiki Platform Injection vulnerability Exploited to Execute Remote Code
CISA has issued an urgent warning about a severe injection vulnerability in the XWiki Platform, designated as CVE-2025-24893.
1 week ago
XWiki Remote Code Execution Flaw Actively Weaponized for Coinmining
A critical security vulnerability in XWiki collaboration software is being actively exploited by threat actors to deploy cryptocurrency mining malware.
2 weeks ago
Attackers Exploit XWiki RCE Vulnerability to Deploy Cryptocurrency Miners
VulnCheck Canaries have captured a sophisticated two-stage attack chain demonstrating the real-world exploitation of this vulnerability.
2 weeks ago
Active Exploits Hit Dassault and XWiki — CISA Confirms Critical Flaws Under Attack
CISA and VulnCheck warn of active exploitation of DELMIA Apriso and XWiki flaws delivering crypto miners.
2 weeks ago
CVE-2024-31982:XWiki 通过 DatabaseSearch 以访客身份远程执行代码
影响 XWiki 的数据库搜索允许通过搜索文本执行远程代码。由于数据库搜索默认可供所有用户访问,因此任何公共 wiki 访问者或封闭 wiki 用户都可以执行远程代码。这会影响整个 XWiki...