Vulnerabilities > Mediawiki > Score > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-04-15 CVE-2020-29007 Code Injection vulnerability in Mediawiki Score
The Score extension through 0.3.0 for MediaWiki has a remote code execution vulnerability due to improper sandboxing of the GNU LilyPond executable.
network
low complexity
mediawiki CWE-94
critical
9.8