Description
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw allowing to evade SVG filter using default attribute values in DTD declaration.
Remediation
References
Related Vulnerabilities
PrestaShop Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-4545)
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-5094)
WordPress Plugin DW Question & Answer Security Bypass (1.2.9)
WordPress Other Vulnerability (CVE-2021-44223)
WordPress Plugin Admin PHP Eval Unspecified Vulnerability (1.0)