XWiki Platform allows remote code execution as guest via SolrSearchMacros request
Any guest can perform arbitrary remote code execution through a request to SolrSearch. This impacts the confidentiality, integrity and availability of the whole XWiki installation.