Vulnerabilities > Mediawiki > Scribunto > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-04-13 | CVE-2015-2939 | Cross-site Scripting vulnerability in Mediawiki Scribunto Cross-site scripting (XSS) vulnerability in the Scribunto extension for MediaWiki allows remote attackers to inject arbitrary web script or HTML via a function name, which is not properly handled in a Lua error backtrace. | 4.3 |