Description
includes/CologneBlueTemplate.php in the CologneBlue skin for MediaWiki through 1.35 allows XSS via a qbfind message supplied by an administrator.
Remediation
References
Related Vulnerabilities
MyBB CVE-2020-22612 Vulnerability (CVE-2020-22612)
Oracle JRE CVE-2014-0451 Vulnerability (CVE-2014-0451)
WordPress Plugin Docket Cache-Object Cache Accelerator Cross-Site Scripting (21.08.01)
WordPress Plugin GiveWP-Donation and Fundraising Platform Cross-Site Scripting (2.11.3)
WordPress Plugin RSS Includes Pages Unspecified Vulnerability (3.1)