CVE-2025-49587 | xwiki-platform up to 15.10.15/16.4.6/16.10.1 insufficient warning (GHSA-j7p2-87q3-44w7 / EUVD-2025-18296)
A vulnerability was found in xwiki-platform up to 15.10.15/16.4.6/16.10.1. It has been rated as critical. This affects an unknown function of the component XWiki.Notifications.Code.NotificationDisplayerClass. This manipulation causes insufficient ui warning of dangerous operations.
The identification of this vulnerability is CVE-2025-49587. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.