Description
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.2, when using HTML Tidy ($wgUseTidy), allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
Remediation
References
Related Vulnerabilities
MySQL CVE-2020-14814 Vulnerability (CVE-2020-14814)
WordPress Plugin WP Page Widget Cross-Site Scripting (2.7)
Apache HTTP Server Improper Input Validation Vulnerability (CVE-2016-8612)
WordPress Plugin EmbedSocial-Social Media Feeds, Reviews and Galleries Cross-Site Scripting (1.1.27)
WordPress Plugin Gravity Forms Information Disclosure (2.4.8)