Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-35626
HistoryDec 21, 2020 - 11:15 p.m.

Cross site request forgery (csrf)

2020-12-2123:15:00
PRIOn knowledge base
www.prio-n.com
1

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.1%

An issue was discovered in the PushToWatch extension for MediaWiki through 1.35.1. The primary form did not implement an anti-CSRF token and therefore was completely vulnerable to CSRF attacks against onSkinAddFooterLinks in PushToWatch.php.

CPENameOperatorVersion
mediawikile1.35.1

8.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.1%

Related for PRION:CVE-2020-35626