Skip to content

Known CVE

XWiki REST API - Private Pages Disclosure

A vulnerability in XWiki's REST API allows unauthenticated users to access information about private pages through the pages endpoint. This could lead to disclosure of sensitive information and page metadata.

CVE-2025-29925

High2025CVSS 7.5CWE-285

cve2025 · xwiki · rest-api · exposure · vkev · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website