Security Advisory
CVE-2019-19708
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The VisualEditor extension through 1.34 for MediaWiki allows XSS via pasted content containing an element with a data-ve-clipboard-key attribute.