Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-36675


An issue was discovered in MediaWiki before 1.35.11, 1.36.x through 1.38.x before 1.38.7, and 1.39.x before 1.39.4. BlockLogFormatter.php in BlockLogFormatter allows XSS in the partial blocks feature.


Published

2023-06-26T01:15:09.203

Last Modified

2024-11-21T08:10:19.743

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application mediawiki mediawiki < 1.35.11 Yes
Application mediawiki mediawiki < 1.38.7 Yes
Application mediawiki mediawiki < 1.39.4 Yes

References