CVE-2013-6454
Publication date 12 May 2014
Last updated 24 July 2024
Ubuntu priority
Description
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to inject arbitrary web script or HTML via a -o-link attribute.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| mediawiki | ||
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
Patch details
| Package | Patch details |
|---|---|
| mediawiki |