Description
The FanBoxes extension for MediaWiki through 1.37.2 (before 027ffb0b9d6fe0d823810cf03f5b562a212162d4) allows Special:UserBoxes CSRF.
Remediation
References
Related Vulnerabilities
PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2007-6600)
WordPress Plugin SEO Smart Links Cross-Site Scripting (3.0.1)
PrestaShop Files or Directories Accessible to External Parties Vulnerability (CVE-2020-5250)
PleskLin Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-0132)
PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0067)