Description
An issue was discovered in the CommentBox extension for MediaWiki through 1.35.2. Via crafted configuration variables, a malicious actor could introduce XSS payloads into various layers.
Remediation
References
Related Vulnerabilities
WebLogic CVE-2016-5531 Vulnerability (CVE-2016-5531)
MediaWiki Improper Authentication Vulnerability (CVE-2011-1766)
Dolibarr CVE-2023-38886 Vulnerability (CVE-2023-38886)
WordPress Plugin Comment Rating 'id' Parameter SQL Injection (2.9.23)
WordPress Plugin Swiss Toolkit For WP Security Bypass (1.0.7)