Description
An issue was discovered in MediaWiki before 1.35.11, 1.36.x through 1.38.x before 1.38.7, 1.39.x before 1.39.4, and 1.40.x before 1.40.1. BlockLogFormatter.php in BlockLogFormatter allows XSS in the partial blocks feature.
Remediation
References
Related Vulnerabilities
WordPress Plugin Basic Dev Tools Multiple Cross-Site Scripting Vulnerabilities (1.4.1)
phpMyAdmin Cryptographic Issues Vulnerability (CVE-2015-3903)
MySQL CVE-2016-3495 Vulnerability (CVE-2016-3495)
WordPress Plugin Akismet Cross-Site Scripting (3.1.4)
PostgreSQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-32028)