CyberRota Analysis
AI-GeneratedApache Wicket versions 9.0.0 to 9.23.0 and 10.0.0 to 10.9.0 are vulnerable to a cross-site scripting (XSS) flaw due to improper input neutralization during web page generation. This vulnerability could allow attackers to inject malicious scripts into web pages, potentially compromising user data and session integrity. Organizations utilizing affected versions should prioritize upgrading to version 10.10.0 to mitigate the risk.
Original NVD Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Wicket. This issue affects Apache Wicket: from 9.0.0 through 9.23.0, from 10.0.0 through 10.9.0. Users are recommended to upgrade to version 10.10.0, which fixes the issue.
Related CVEs
Other vulnerabilities affecting the same vendor(s)