Lucene search

K
cvelistMitreCVELIST:CVE-2021-45474
HistoryDec 24, 2021 - 1:03 a.m.

CVE-2021-45474

2021-12-2401:03:28
mitre
www.cve.org
4
mediawiki 1.37
special:importfile
xss

EPSS

0.001

Percentile

39.1%

In MediaWiki through 1.37, the Special:ImportFile URI (aka FileImporter) allows XSS, as demonstrated by the clientUrl parameter.

EPSS

0.001

Percentile

39.1%