mediawiki vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the mediawiki package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2017-0371

*
  • M
Improper Input Validation

*
  • L
Incorrect Default Permissions

*
  • L
Cross-site Request Forgery (CSRF)

*
  • M
Open Redirect

*
  • L
Improper Input Validation

*
  • M
Open Redirect

*
  • M
Cross-site Scripting (XSS)

*
  • M
Arbitrary Code Injection

*
  • M
Improper Input Validation

*
  • L
Information Exposure

*
  • L
Information Exposure

*
  • L
Cross-site Scripting (XSS)

*
  • L
Improper Input Validation

*
  • M
Arbitrary Code Injection

*
  • L
CVE-2017-8812

*
  • L
Improper Input Validation

*
  • M
Improper Input Validation

*
  • M
Improper Access Control

*
  • M
Cross-site Scripting (XSS)

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Information Exposure

*
  • M
Improper Access Control

*
  • M
Cross-site Request Forgery (CSRF)

*
  • M
Improper Access Control

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Credentials Management

*
  • M
Information Exposure

*
  • M
Cross-site Request Forgery (CSRF)

*
  • M
Access Restriction Bypass

*
  • L
Resource Management Errors

*
  • L
Improper Access Control

*
  • L
Information Exposure

*
  • L
Resource Management Errors

*
  • M
Cross-site Request Forgery (CSRF)

*
  • M
Information Exposure

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Resource Management Errors

*
  • M
Cross-site Scripting (XSS)

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Request Forgery (CSRF)

*
  • M
Resource Management Errors

*
  • M
Cross-site Scripting (XSS)

*
  • M
Resource Management Errors

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Arbitrary Command Injection

*
  • M
Cross-site Request Forgery (CSRF)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Request Forgery (CSRF)

*
  • M
Improper Input Validation

*
  • M
Cross-site Scripting (XSS)

*