Description
An issue was discovered in the Cargo extension for MediaWiki through 1.39.3. It allows one to store javascript: URLs in URL fields, and automatically links these URLs.
Remediation
References
Related Vulnerabilities
WordPress Plugin Survey Maker-Best WordPress Survey SQL Injection (1.5.5)
Oracle JRE CVE-2022-21299 Vulnerability (CVE-2022-21299)
Magento Improper Access Control Vulnerability (CVE-2021-21020)
Squid Improper Input Validation Vulnerability (CVE-2009-2622)
WordPress Plugin Booster for WooCommerce Security Bypass (5.4.3)