Description
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.16.2 allows remote attackers to inject arbitrary web script or HTML via crafted Cascading Style Sheets (CSS) comments, aka "CSS injection vulnerability."
Remediation
References
Related Vulnerabilities
WordPress Plugin Child Theme Creator by Orbisius Cross-Site Request Forgery (1.5.1)
Oracle JRE CVE-2013-2400 Vulnerability (CVE-2013-2400)
Ruby on Rails URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2021-44528)
WordPress Plugin DP Thumbnail TimThumb Arbitrary File Upload (1.0)