Description
An issue was discovered in SpecialEditGrowthConfig in the GrowthExperiments extension in MediaWiki through 1.36.2. The growthexperiments-edit-config-error-invalid-title MediaWiki message was not being properly sanitized and allowed for the injection and execution of HTML and JavaScript.
Remediation
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-7833)
Citrix NetScaler Information Disclosure 'Citrix Bleed' (CVE-2023-4966)
WordPress 4.9.x Multiple Vulnerabilities (4.9 - 4.9.8)
Envoy Proxy NULL Pointer Dereference Vulnerability (CVE-2021-28683)
Oracle Database Server CVE-2010-0870 Vulnerability (CVE-2010-0870)