CVE-2024-47845
05.10.2024, 01:15
Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2.Enginsight
Vendor | Product | Version |
---|---|---|
wikimedia | mediawiki-extensions-css | 1.39.9 < 𝑥 < 1.39.9 |
wikimedia | mediawiki-extensions-css | 1.41.3 < 𝑥 < 1.41.3 |
wikimedia | mediawiki-extensions-css | 1.42.2 < 𝑥 < 1.42.2 |
wikimedia | wikimedia-extensions-css | 1.39.0 ≤ 𝑥 < 1.39.9 |
wikimedia | wikimedia-extensions-css | 1.41.0 ≤ 𝑥 < 1.41.3 |
wikimedia | wikimedia-extensions-css | 1.42.0 ≤ 𝑥 < 1.42.2 |
𝑥
= Vulnerable software versions