Vulnerabilities > Mediawiki > Scribunto > Medium

DATE CVE VULNERABILITY TITLE RISK
2015-04-13 CVE-2015-2939 Cross-site Scripting vulnerability in Mediawiki Scribunto
Cross-site scripting (XSS) vulnerability in the Scribunto extension for MediaWiki allows remote attackers to inject arbitrary web script or HTML via a function name, which is not properly handled in a Lua error backtrace.
network
mediawiki CWE-79
4.3