Description
Cross-site request forgery (CSRF) vulnerability in Special:CreateCategory in the SemanticForms extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to hijack the authentication of users for requests that create categories via unspecified vectors.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2012-0082 Vulnerability (CVE-2012-0082)
Jenkins Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-0788)
WordPress Plugin AVH Extended Categories Widgets SQL Injection (4.0.0)
WordPress Plugin Simple Feature Requests Free Unspecified Vulnerability (1.0.4)