Vulnerabilities > Mediawiki

DATE CVE VULNERABILITY TITLE RISK
2022-09-29 CVE-2021-42049 Unspecified vulnerability in Mediawiki
An issue was discovered in the Translate extension in MediaWiki through 1.36.2.
network
low complexity
mediawiki
6.5
2022-09-19 CVE-2022-28201 Uncontrolled Recursion vulnerability in multiple products
An issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37.2.
local
low complexity
mediawiki debian CWE-674
4.4
2022-09-19 CVE-2022-28203 Release of Invalid Pointer or Reference vulnerability in multiple products
A denial-of-service issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37.2.
network
low complexity
mediawiki debian CWE-763
7.5
2022-09-19 CVE-2022-28204 Unspecified vulnerability in Mediawiki 1.37.0/1.37.1
A denial-of-service issue was discovered in MediaWiki 1.37.x before 1.37.2.
network
low complexity
mediawiki
7.5
2022-09-02 CVE-2022-39194 Resource Exhaustion vulnerability in Mediawiki
An issue was discovered in the MediaWiki through 1.38.2.
network
low complexity
mediawiki CWE-400
4.9
2022-07-02 CVE-2022-34911 Cross-site Scripting vulnerability in multiple products
An issue was discovered in MediaWiki before 1.35.7, 1.36.x and 1.37.x before 1.37.3, and 1.38.x before 1.38.1.
network
low complexity
mediawiki fedoraproject CWE-79
6.1
2022-07-02 CVE-2022-34912 An issue was discovered in MediaWiki before 1.37.3 and 1.38.x before 1.38.1.
network
low complexity
mediawiki fedoraproject
6.1
2022-06-28 CVE-2022-34750 Allocation of Resources Without Limits or Throttling vulnerability in Mediawiki
An issue was discovered in MediaWiki through 1.38.1.
network
low complexity
mediawiki CWE-770
7.5
2022-05-02 CVE-2022-29969 Cross-site Scripting vulnerability in Mediawiki RSS for Mediawiki
The RSS extension before 2022-04-29 for MediaWiki allows XSS via an rss element (if the feed is in $wgRSSUrlWhitelist and $wgRSSAllowLinkTag is true).
network
low complexity
mediawiki CWE-79
6.1
2022-04-30 CVE-2022-28323 Unspecified vulnerability in Mediawiki
An issue was discovered in MediaWiki through 1.37.2.
network
low complexity
mediawiki
7.5