Description
An issue was discovered in the Nimbus skin for MediaWiki through 1.42.1. There is Stored XSS via MediaWiki:Nimbus-sidebar menu and submenu entries.
Remediation
References
Related Vulnerabilities
Oracle HTTP Server Use After Free Vulnerability (CVE-2019-0211)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-11057)
PHP Incorrect Calculation of Buffer Size Vulnerability (CVE-2008-0599)
WordPress Plugin 301 Redirects-Easy Redirect Manager Security Bypass (2.40)