mediawiki

431 tracked vulnerabilities.

CVE-2015-2931
MediaWiki <1.19.24, <1.23.9, <1.24.2 - XSS
Apr 13, 2015
EPSS 0.00
CVE-2014-9481 MEDIUM
MediaWiki < 1.19.23 - Exposure of Sensitive Information via Scribunto Extension
Jan 27, 2020
CVSS 5.9
EPSS 0.01
CVE-2014-1686 MEDIUM
MediaWiki 1.18.0 - Information Exposure via Thumbnail Creation
Apr 16, 2018
CVSS 5.3
EPSS 0.00
CVE-2014-9487 CRITICAL
MediaWiki <1.24.1, 1.23.8, 1.22.15, 1.19.23 - Info Disclosure
Oct 17, 2017
CVSS 9.8
EPSS 0.01
CVE-2014-9480
MediaWiki Hovercards Extension - Cross-Site Scripting via Text Extracts
Jan 16, 2015
EPSS 0.00
CVE-2014-9479
MediaWiki - Cross-Site Scripting via TemplateSandbox Text Parameter
Jan 16, 2015
EPSS 0.00
CVE-2014-9478
MediaWiki - Cross-Site Scripting via ExpandTemplates Extension Preview
Jan 16, 2015
EPSS 0.00
CVE-2014-9477
MediaWiki Listings Extension - Stored Cross-Site Scripting via Name or URL Parameter
Jan 16, 2015
EPSS 0.00
CVE-2014-9476
MediaWiki <1.22.15-1.24.1 - Auth Bypass
Jan 16, 2015
EPSS 0.01
CVE-2014-9475
MediaWiki <1.19.23, 1.2x<1.22.15, 1.23.x<1.23.8, 1.24.x<1.24.1 - XSS
Jan 16, 2015
EPSS 0.00
CVE-2014-9507
MediaWiki 1.21.x 1.22.x < 1.22.14 1.23.x < 1.23.7 - Cross-Site Scripting via Content Model Revision
Jan 04, 2015
EPSS 0.00
CVE-2014-9277
MediaWiki <1.19.22, 1.20.x-1.22.x<1.22.14, 1.23.x<1.23.7 - Code Inj...
Jan 04, 2015
EPSS 0.01
CVE-2014-9276
MediaWiki <1.19.22, 1.20.x-1.22.x before 1.22.14, 1.23.x before 1.2...
Jan 04, 2015
EPSS 0.00
CVE-2014-7295
MediaWiki <1.19.20, <1.22.12, <1.23.5 - XSS
Oct 07, 2014
EPSS 0.00
CVE-2014-7199
MediaWiki <1.19.19, <1.22.11, <1.23.4 - XSS
Sep 30, 2014
EPSS 0.00
CVE-2014-5243
MediaWiki < 1.19.18, 1.20.x-1.22.x < 1.22.9, 1.23.x < 1.23.2 - Clickjacking via IFRAME Protection Bypass
Aug 22, 2014
EPSS 0.00
CVE-2014-5242
MediaWiki 1.22.x-1.22.9 and 1.23.x-1.23.2 - Cross-Site Scripting via multipageimagenavbox Class
Aug 22, 2014
EPSS 0.00
CVE-2014-5241
MediaWiki < 1.19.18, 1.20.x-1.22.x < 1.22.9, 1.23.x < 1.23.2 - Cross-Site Request Forgery via JSONP Callback
Aug 22, 2014
EPSS 0.00
CVE-2014-3966
MediaWiki <1.19.16, <1.21.10, <1.22.7 - XSS
Jun 06, 2014
EPSS 0.00
CVE-2014-3455
MediaWiki SemanticForms CSRF in CreateProperty, CreateTemplate, CreateForm, and CreateClass
May 12, 2014
EPSS 0.00
CVE-2014-3454
MediaWiki < 1.19.10, 1.2x < 1.21.4, 1.22.x < 1.22.1 - Cross-Site Request Forgery in Special:CreateCategory
May 12, 2014
EPSS 0.00
CVE-2014-2853
MediaWiki < 1.21.9 and 1.22.x < 1.22.6 - Cross-Site Scripting via Info Action Sort Key
Apr 29, 2014
EPSS 0.00
CVE-2014-2665
MediaWiki <1.19.14, 1.20.x<1.21.8, 1.22.x<1.22.5 - Info Disclosure
Apr 20, 2014
EPSS 0.00
CVE-2014-2244
MediaWiki <1.19.12, <1.20.x, <1.21.6, <1.22.3 - XSS
Mar 02, 2014
EPSS 0.00
CVE-2014-2243
MediaWiki <1.19.12, <1.20.x, <1.21.6, <1.22.3 - Info Disclosure
Mar 02, 2014
EPSS 0.00