6.2 Medium
AI Score
Confidence
High
0.001 Low
EPSS
Percentile
23.3%
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. There is Blind Stored XSS via a URL to the Upload Image feature.
phabricator.wikimedia.org/T293589
security.gentoo.org/glsa/202305-24