CVE-2025-52133

The Mocca Calendar application before 2.15 for XWiki allows XSS via a title upon calendar import.
Configurations

No configuration.

History

04 Aug 2025, 15:06

Type Values Removed Values Added
Summary
  • (es) La aplicación Mocca Calendar para XWiki anterior a 2.15 permite XSS a través de un título al importar el calendario.

03 Aug 2025, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-03 04:15

Updated : 2025-08-04 15:06


NVD link : CVE-2025-52133

Mitre link : CVE-2025-52133

CVE.ORG link : CVE-2025-52133


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')