CVE-2026-53966 | XWiki Platform up to 18.1.0-rc-0 Live Data edit REST API improper authorization
A vulnerability categorized as critical has been discovered in XWiki Platform 13.4-rc-1/16.10.16/17.4.9/17.10.3/18.1.0-rc-0. This affects an unknown function of the component Live Data edit REST API. Such manipulation leads to improper authorization.
This vulnerability is listed as CVE-2026-53966. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More