Netskope Threat Labs

SERVER-WEBAPP XWiki SolrSearch code injection attempt

IPS-NPA

1 SID: 65544

Detects an attempt to exploit CVE-2025-24893, a code execution flaw that can run code on the server in XWiki SolrSearch. The flaw saw active exploitation of internet-facing XWiki instances to drop webshells.