Description
An issue was discovered in SecurePoll in the Growth extension in MediaWiki through 1.36.2. Simple polls allow users to create alerts by changing their User-Agent HTTP header and submitting a vote.
Remediation
References
Related Vulnerabilities
WordPress Plugin Advanced Shipment Tracking for WooCommerce Security Bypass (3.2.6)
Moodle Credentials Management Errors Vulnerability (CVE-2011-4587)
WordPress Plugin Accept Donations with PayPal Cross-Site Scripting (1.3.1)
WebLogic CVE-2023-21837 Vulnerability (CVE-2023-21837)
Oracle Database Server CVE-2006-3698 Vulnerability (CVE-2006-3698)