Description
An issue was discovered in the ArticleRatings extension for MediaWiki through 1.42.1. Special:ChangeRating allows CSRF to alter data via a GET request.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2018-2641 Vulnerability (CVE-2018-2641)
Magento Improper Authorization Vulnerability (CVE-2021-21022)
Oracle Database Server CVE-2010-2411 Vulnerability (CVE-2010-2411)
Rukovoditel Improper Input Validation Vulnerability (CVE-2020-11819)
WordPress Plugin WP Page Builder Cross-Site Scripting (1.2.8)