Vulnerabilities > Mediawiki > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-12 CVE-2024-23177 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in the WatchAnalytics extension in MediaWiki before 1.40.2.
network
low complexity
mediawiki CWE-79
6.1
2024-01-12 CVE-2024-23178 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in the Phonos extension in MediaWiki before 1.40.2.
network
low complexity
mediawiki CWE-79
5.4
2024-01-12 CVE-2024-23179 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in the GlobalBlocking extension in MediaWiki before 1.40.2.
network
low complexity
mediawiki CWE-79
6.1
2024-01-12 CVE-2024-23171 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in the CampaignEvents extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2.
network
low complexity
mediawiki CWE-79
5.4
2024-01-12 CVE-2024-23172 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in the CheckUser extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2.
network
low complexity
mediawiki CWE-79
5.4
2024-01-12 CVE-2024-23173 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in the Cargo extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2.
network
low complexity
mediawiki CWE-79
6.1
2024-01-12 CVE-2024-23174 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in the PageTriage extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2.
network
low complexity
mediawiki CWE-79
5.4
2023-12-22 CVE-2023-51704 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2.
network
low complexity
mediawiki CWE-79
6.1
2023-11-03 CVE-2023-45360 Cross-site Scripting vulnerability in Mediawiki
An issue was discovered in MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1.
network
low complexity
mediawiki CWE-79
5.4
2023-11-03 CVE-2023-45362 Unspecified vulnerability in Mediawiki
An issue was discovered in DifferenceEngine.php in MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1.
network
low complexity
mediawiki
4.3