📦 Pro Macros

by Xwiki

🔍 What is Pro Macros?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-55727

CRITICAL CVSS 10.0 Sep 9, 2025

CVE-2025-55727 is a critical remote code execution vulnerability in XWiki Remote Macros that allows attackers to execute arbitrary code on affected systems. The vulnerability affects any user who can ...

CVE-2024-42489

CRITICAL CVSS 10.0 Aug 12, 2024

This CVE describes a critical remote code execution vulnerability in Pro Macros for XWiki. Attackers with view rights on specific pages or edit/comment rights on any page can exploit missing escaping ...

CVE-2025-65036

HIGH CVSS 8.3 Dec 5, 2025

CVE-2025-65036 is a critical vulnerability in XWiki Remote Macros that allows unauthenticated attackers to execute arbitrary code via Velocity templates. This affects XWiki instances using the Remote ...

CVE-2025-65089

MEDIUM CVSS 6.8 Nov 19, 2025

This vulnerability allows users without view permissions to access Office attachment content via the view file macro in XWiki Remote Macros. It affects XWiki installations using the Remote Macros exte...