CVE-2022-29251
Java vulnerability analysis and mitigation

Overview

XWiki Platform Flamingo Theme UI contained a Cross-Site Scripting (XSS) vulnerability identified as CVE-2022-29251. The vulnerability was discovered in versions 6.3-rc-1 and above, and 6.2.4 and above, where the 'newThemeName' form field in the FlamingoThemesCode.WebHomeSheet wiki page was not properly escaped, allowing for potential XSS attacks. The issue was patched in versions 12.10.11, 14.0-rc-1, 13.4.7, and 13.10.3 (GitHub Advisory).

Technical details

The vulnerability existed in the FlamingoThemesCode.WebHomeSheet wiki page where the 'newThemeName' form field parameter was inserted without proper XML escaping. The attack vector involved passing malicious content through the newThemeName URL parameter, which would then be reflected in the form without sanitization. The vulnerability has a CVSS v3.1 base score of 6.8 (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N), indicating moderate severity (GitHub Advisory).

Impact

The vulnerability could allow an attacker to execute arbitrary web scripts or HTML in the context of the user's browser session, potentially leading to theft of sensitive information or session hijacking. The CVSS metrics indicate high confidentiality impact, though integrity and availability were not affected (GitHub Advisory).

Mitigation and workarounds

The vulnerability was fixed by implementing proper XML escaping for the newThemeName parameter. As a workaround before applying the patch, users could manually edit the FlamingoThemesCode.WebHomeSheet wiki page to add proper escaping. The fix was implemented in commit bd935320bee3c27cf7548351b1d0f935f116d437 (GitHub Commit).

Additional resources


SourceThis report was generated using AI

Related Java vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-26866HIGH8.8
  • JavaJava
  • org.apache.hugegraph:hg-pd-core
NoYesDec 12, 2025
CVE-2025-66474HIGH8.7
  • JavaJava
  • org.xwiki.rendering:xwiki-rendering-xml
NoYesDec 10, 2025
CVE-2025-66473HIGH8.7
  • JavaJava
  • org.xwiki.platform:xwiki-platform-rest-server
NoYesDec 10, 2025
CVE-2025-67505HIGH8.4
  • JavaJava
  • com.okta.sdk:okta-sdk-root
NoYesDec 10, 2025
CVE-2025-14518MEDIUM5.3
  • JavaJava
  • tech.powerjob:powerjob-common
NoNoDec 11, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management