Description
MediaWiki before 1.35.1 allows XSS via BlockLogFormatter.php. Language::translateBlockExpiry itself does not escape in all code paths. For example, the return of Language::userTimeAndDate is is always unsafe for HTML in a month value. This affects MediaWiki 1.12.0 and later.
Remediation
References
Related Vulnerabilities
Apache Tomcat Other Vulnerability (CVE-2002-2008)
Internet Information Services Other Vulnerability (CVE-1999-0253)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1135)
WordPress Plugin SoundCloud Is Gold 'width' Parameter Cross-Site Scripting (2.1)
Oracle Database Server CVE-2014-6577 Vulnerability (CVE-2014-6577)