HomeDefault status
unaffected
1.39 (semver)
affected
Description
Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - Confirm Account Extension allows Cross-Site Scripting (XSS).This issue affects Mediawiki - Confirm Account Extension: from 1.39 through 1.43.
Problem types
CWE-116 Improper Encoding or Escaping of Output
Product status
1.39 (semver)
Credits
BlankEclair
References
phabricator.wikimedia.org/T386908
gerrit.wikimedia.org/...7103ffb78c671890b44ccd59fcff6613975f