XWiki Incorrect Authorization Vulnerability - CVE-2023-50732
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It39s possible to execute a Velocity script without script right through the document tree. This has been patched in XWiki 14.10.7 and 15.2RC1.