Log inSkip to main contentSkip to sidebar
Loading…
XWiki.org JIRA
  • Dashboards
  • Projects
  • Issues
  • Give feedback to Atlassian
  • Help
    • Jira Core help
    • Keyboard Shortcuts
    • About Jira
    • Jira Credits
  • Log In

Export - CSV (All fields)

Export - CSV (Current fields)

Comma (,) Semicolon (;) Vertical bar (|) Caret (^)

  1. Bug XWIKI-22490
    The WikiManager REST API allows any user to create wikis
  2. Bug XWIKI-22487
    Open redirect through HTML conversion request filter
  3. Bug XWIKI-22474
    The Solr script service doesn't take dropped programming right into account
  4. Bug XWIKI-22462
    The lesscss script service allows cache clearing without programming right
  5. Bug XWIKI-22460
    No warning when granting XWiki.ComponentClass programming right
  6. Task XWIKI-22139
    Upgrade to dompurify 3.1.1
  7. Bug XWIKI-22030
    Remote code execution from account through macro descriptions and XWiki.XWikiSyntaxMacrosList
  8. Bug XWIKI-22002
    The required rights analysis doesn't consider TextAreas with default content type
  9. Bug XWIKI-21890
    Remote code execution through the extension sheet
  10. Bug XWIKI-21810
    XSS through XClass name in string properties
  11. Bug XWIKI-21663
    Scheduler in subwiki allows scheduling operations for any main wiki user
  12. Bug XWIKI-21626
    XSS through conflict resolution
  13. Bug XWIKI-21611
    Disabling a user account changes its author, allowing RCE from user account
  14. Bug XWIKI-21474
    Remote code execution from account via SearchSuggestSourceSheet
  15. Bug XWIKI-21473
    Remote code execution from account via SearchSuggestConfigSheet
  16. Bug XWIKI-21472
    Remote code execution via DatabaseSearch
  17. Bug XWIKI-21471
    Remote code execution through space title and Solr space facet
  18. Bug XWIKI-21438
    Remote code execution from view right on Panels.PanelLayoutUpdate
  19. Bug XWIKI-21416
    CSRF remote code execution through scheduler job's document reference
  20. Bug XWIKI-21411
    Privilege escalation (PR) from edit in multilingual wikis via translations
  21. Bug XWIKI-21337
    Privilege escalation (PR) from user registration through PDFClass
  22. Bug XWIKI-21335
    Privilege escalation (PR) from account through UIExtension parameters
  23. Bug XWIKI-21208
    Solr search discloses password hashes of all users
  24. Bug XWIKI-21207
    RCE from script right in configurable sections
  25. Bug XWIKI-21200
    RCE from account through SearchAdmin
  26. Bug XWIKI-21194
    Remote code execution through class name in configurable section
  27. Bug XWIKI-21173
    RCE via first name in user registration
  28. Bug XWIKI-21167
    XSS/CSRF RCE in XWiki.ConfigurableClass
  29. Bug XWIKI-21138
    Whole content of all documents of all wikis exposed to anybody with view right on Solr suggest service
  30. Bug XWIKI-21122
    Remote code execution/programming rights through document reference with configuration section from edit right
  31. Bug XWIKI-21121
    Remote code execution/programming rights through heading of configuration sections with edit rights
  32. Bug XWIKI-21095
    RXSS through revision parameter in content menu
  33. Bug XWIKI-20962
    XSS from account in the create page form via template provider
  34. Bug XWIKI-20961
    XSS with edit right in the create document form for existing pages
  35. Bug XWIKI-20869
    Users can be tricked to execute scripts as the create action doesn't display the page's title
  36. Bug XWIKI-20854
    Reflected XSS in the create document form if name validation is enabled
  37. Bug XWIKI-20852
    Groovy jobs check the wrong author, allowing remote code execution
  38. Bug XWIKI-20851
    CSRF in the job scheduler
  39. Bug XWIKI-20849
    CSRF privilege escalation/RCE via the create action
  40. Bug XWIKI-20848
    Velocity execution without script right through VelocityCode property
  41. Bug XWIKI-20847
    Velocity execution without script right through VelocityWiki property
  42. Bug XWIKI-20818
    Cookies are sent to external images in rendered diff (and server side request forgery)
  43. Bug XWIKI-20817
    The diff displays deleted revisions without additional right check
  44. Bug XWIKI-20746
    Privilege escalation (PR) from account through Menu.UIExtensionSheet
  45. Bug XWIKI-20715
    Arbitrary server side file writing from account through office converter
  46. Bug XWIKI-20685
    No extra right check in script API when accessing deleted documents
  47. Bug XWIKI-20684
    Comments of deleted documents can be viewed through REST API
  48. Bug XWIKI-20625
    Velocity execution without script right through tree macro
  49. Bug XWIKI-20624
    Privilege escalation from script right to programming right through title displayer
  50. Bug XWIKI-20611
    Privilege escalation (PR) from account through like LiveTableResults
Refresh results
{"errorMessages":["You are not authorised to perform this operation. Please log in."],"errors":{}}
[{"id":-1,"name":"My open issues","jql":"assignee = currentUser() AND resolution = Unresolved order by updated DESC","isSystem":true,"sharePermissions":[],"requiresLogin":true},{"id":-2,"name":"Reported by me","jql":"reporter = currentUser() order by created DESC","isSystem":true,"sharePermissions":[],"requiresLogin":true},{"id":-4,"name":"All issues","jql":"order by created DESC","isSystem":true,"sharePermissions":[],"requiresLogin":false},{"id":-5,"name":"Open issues","jql":"resolution = Unresolved order by priority DESC,updated DESC","isSystem":true,"sharePermissions":[],"requiresLogin":false},{"id":-9,"name":"Done issues","jql":"statusCategory = Done order by updated DESC","isSystem":true,"sharePermissions":[],"requiresLogin":false},{"id":-3,"name":"Viewed recently","jql":"issuekey in issueHistory() order by lastViewed DESC","isSystem":true,"sharePermissions":[],"requiresLogin":false},{"id":-6,"name":"Created recently","jql":"created >= -1w order by created DESC","isSystem":true,"sharePermissions":[],"requiresLogin":false},{"id":-7,"name":"Resolved recently","jql":"resolutiondate >= -1w order by updated DESC","isSystem":true,"sharePermissions":[],"requiresLogin":false},{"id":-8,"name":"Updated recently","jql":"updated >= -1w order by updated DESC","isSystem":true,"sharePermissions":[],"requiresLogin":false}]
0.3
0
  • Atlassian Jira Project Management Software
  • About Jira
  • Report a problem

Powered by a free Atlassian Jira open source license for XWiki.org. Try Jira - bug tracking software for your team.

Atlassian