Total vulnerabilities in the database
The Scribunto extension for MediaWiki allows remote attackers to obtain the rollback token and possibly other sensitive information via a crafted module, related to unstripping special page HTML.
Software | From | Fixed in |
---|---|---|
mediawiki / mediawiki | 1.23.9 | 1.24.1 |
mediawiki / mediawiki | 1.23.0 | 1.23.8 |
mediawiki / mediawiki | 1.19.24 | 1.22.15 |
mediawiki / mediawiki | - | 1.19.23 |