HomeDefault status
unaffected
1.39.x (semver)
affected
1.42.x (semver)
affected
1.43.x (semver)
affected
Description
Improper Input Validation vulnerability in Wikimedia Foundation Mediawiki - FeaturedFeeds Extension allows Cross-Site Scripting (XSS).This issue affects Mediawiki - FeaturedFeeds Extension: 1.39.X, 1.42.X, 1.43.X.
Problem types
CWE-20 Improper Input Validation
Product status
1.39.x (semver)
1.42.x (semver)
1.43.x (semver)
Credits
Legoktm
References
phabricator.wikimedia.org/T392279
gerrit.wikimedia.org/...i/extensions/FeaturedFeeds/+/1149742