Логотип exploitDog
bind:CVE-2024-47536
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-47536

Количество 2

Количество 2

nvd логотип

CVE-2024-47536

больше 1 года назад

Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. A user with the editmyprivateinfo right or who can otherwise change their name can XSS themselves by setting their "real name" to an XSS payload. This vulnerability is fixed in 2.31.0.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-62r2-gcxr-426x

больше 1 года назад

starcitizentools/citizen-skin vulnerable to stored, self-XSS in the "real name" field

CVSS3: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-47536

Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. A user with the editmyprivateinfo right or who can otherwise change their name can XSS themselves by setting their "real name" to an XSS payload. This vulnerability is fixed in 2.31.0.

CVSS3: 5.4
1%
Низкий
больше 1 года назад
github логотип
GHSA-62r2-gcxr-426x

starcitizentools/citizen-skin vulnerable to stored, self-XSS in the "real name" field

CVSS3: 4.6
1%
Низкий
больше 1 года назад

Уязвимостей на страницу