CVE-2024-47845
05.10.2024, 01:15
Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2.Enginsight
| Vendor | Product | Version |
|---|---|---|
| wikimedia | mediawiki-extensions-css | 1.39.9 < 𝑥 < 1.39.9 |
| wikimedia | mediawiki-extensions-css | 1.41.3 < 𝑥 < 1.41.3 |
| wikimedia | mediawiki-extensions-css | 1.42.2 < 𝑥 < 1.42.2 |
| wikimedia | wikimedia-extensions-css | 1.39.0 ≤ 𝑥 < 1.39.9 |
| wikimedia | wikimedia-extensions-css | 1.41.0 ≤ 𝑥 < 1.41.3 |
| wikimedia | wikimedia-extensions-css | 1.42.0 ≤ 𝑥 < 1.42.2 |
𝑥
= Vulnerable software versions