CVE-2020-26120
published 2020-09-27CVE-2020-26120: XSS exists in the MobileFrontend extension for MediaWiki before 1.34.4 because section.line is mishandled during regex section line replacement from…
PriorityP425medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
EPSS
0.98%
58.8th percentile
XSS exists in the MobileFrontend extension for MediaWiki before 1.34.4 because section.line is mishandled during regex section line replacement from PageGateway. Using crafted HTML, an attacker can elicit an XSS attack via jQuery's parseHTML method, which can cause image callbacks to fire even without the element being appended to the DOM.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fedoraproject | fedora | — | — |
| mediawiki | mediawiki | < 1.34.4 | 1.34.4 |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
vendor_redhat6.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-h2mq-xrr7-hwv8: XSS exists in the MobileFrontend extension for MediaWiki before 1
ghsa_unreviewed·2022-05-24
CVE-2020-26120 [MEDIUM] CWE-79 GHSA-h2mq-xrr7-hwv8: XSS exists in the MobileFrontend extension for MediaWiki before 1
XSS exists in the MobileFrontend extension for MediaWiki before 1.34.4 because section.line is mishandled during regex section line replacement from PageGateway. Using crafted HTML, an attacker can elicit an XSS attack via jQuery's parseHTML method, which can cause image callbacks to fire even without the element being appended to the DOM.
Red Hat
mediawiki: XSS exists in the MobileFrontend extension
vendor_redhat·2020-09-27·CVSS 6.1
CVE-2020-26120 [MEDIUM] CWE-79 mediawiki: XSS exists in the MobileFrontend extension
mediawiki: XSS exists in the MobileFrontend extension
XSS exists in the MobileFrontend extension for MediaWiki before 1.34.4 because section.line is mishandled during regex section line replacement from PageGateway. Using crafted HTML, an attacker can elicit an XSS attack via jQuery's parseHTML method, which can cause image callbacks to fire even without the element being appended to the DOM.
Statement: OpenShift Container Platform (OCP) delivers the mediawiki package, but the vulnerable code is not bundled, therefore OCP is not affected by this flaw.
Package: mediawiki (Red Hat OpenShift Container Platform 3.11) - Not affected
Package: mediawiki (Red Hat OpenShift Container Platform 4) - Not affected
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://gerrit.wikimedia.org/r/q/I42e079bc875d17b336ab015f3678eaedc26e10eahttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RTTPZ7XMDS66I442OLLHXBDNP2LCBJU6/https://phabricator.wikimedia.org/T262213https://gerrit.wikimedia.org/r/q/I42e079bc875d17b336ab015f3678eaedc26e10eahttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RTTPZ7XMDS66I442OLLHXBDNP2LCBJU6/https://phabricator.wikimedia.org/T262213
2020-09-27
Published