Description
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. There is Blind Stored XSS via a URL to the Upload Image feature.
Remediation
References
Related Vulnerabilities
PrestaShop CVE-2023-39529 Vulnerability (CVE-2023-39529)
WordPress Plugin Easy Plugin for AdSense Cross-Site Request Forgery (6.06)
WordPress Plugin Print Invoice & Delivery Notes for WooCommerce Cross-Site Scripting (4.7.1)
Apache HTTP Server Improper Access Control Vulnerability (CVE-2016-4979)
Apache Tomcat Improper Authentication Vulnerability (CVE-2012-5886)