Description
An issue was discovered in the WatchAnalytics extension in MediaWiki before 1.40.2. XSS can occur via the Special:PageStatistics page parameter.
Remediation
References
Related Vulnerabilities
Ruby Improper Input Validation Vulnerability (CVE-2013-1821)
WordPress Plugin Awesome Support-WordPress HelpDesk & Support Multiple Vulnerabilities (4.3.1)
WordPress Plugin Tutor LMS-eLearning and online course solution Cross-Site Request Forgery (2.6.1)
WordPress Plugin Membership Simplified Arbitrary File Download (1.58)