Security Advisory

CVE-2022-29969

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-02 04:18:27
Last updated 2024-08-03 06:40:46
Assigner mitre
State PUBLISHED

Description

The RSS extension before 2022-04-29 for MediaWiki allows XSS via an rss element (if the feed is in $wgRSSUrlWhitelist and $wgRSSAllowLinkTag is true).