An issue was discovered in MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1. There is XSS in youhavenewmessagesmanyusers and youhavenewmessages i18n messages. This is related to MediaWiki:Youhavenewmessagesfromusers.
References
Link | Resource |
---|---|
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FU2FGUXXK6TMV6R52VRECLC6XCSQQISY/ | |
https://phabricator.wikimedia.org/T340221 | Exploit Issue Tracking Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-11-03T00:00:00
Updated: 2024-06-11T14:12:18.211Z
Reserved: 2023-10-09T00:00:00
Link: CVE-2023-45360
JSON object: View
NVD Information
Status : Modified
Published: 2023-11-03T05:15:30.730
Modified: 2024-06-10T17:16:13.783
Link: CVE-2023-45360
JSON object: View
Redhat Information
No data.
CWE