Description
An issue was discovered in the Metrolook skin for MediaWiki through 1.42.1. There is stored XSS via MediaWiki:Sidebar top-level menu entries.
Remediation
References
Related Vulnerabilities
WordPress Plugin LeadSnap PHP Object Injection (1.23)
WordPress Plugin WP Hardening-Fix Your WordPress Security Cross-Site Scripting (1.2.1)
WordPress Plugin DW Question & Answer Security Bypass (1.2.9)
WordPress Plugin WooCommerce Help Scout Arbitrary File Upload (2.9)
WordPress Plugin Email Artillery (MASS EMAIL) Multiple Vulnerabilities (4.1)