An issue was discovered in the... CVE-2024-34500

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

An issue was discovered in the UnlinkedWikibase extension in MediaWiki before 1.39.6, 1.40.x before 1.40.2, and 1.41.x before 1.41.1. XSS can occur through an interface message. Error messages (in the $err var) are not escaped before being passed to Html::rawElement() in the getError() function in the Hooks class.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息