An issue was discovered in MediaWiki before 1.35.11, 1.36.x through 1.38.x before 1.38.7, and 1.39.x before 1.39.4. BlockLogFormatter.php in BlockLogFormatter allows XSS in the partial blocks feature.
2023-06-26T01:15:09.203
2024-11-21T08:10:19.743
Modified
CVSSv3.1: 6.1 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mediawiki | mediawiki | < 1.35.11 | Yes |
Application | mediawiki | mediawiki | < 1.38.7 | Yes |
Application | mediawiki | mediawiki | < 1.39.4 | Yes |