Critical security vulnerability in MediaWiki 1.19.1

Erik Moeller erik at wikimedia.org
Tue Sep 4 21:34:28 UTC 2012


Hi KDE web team,

the MediaWiki version running on userbase.kde.org has a critical
security vulnerability allowing trivial HTML/JS injection. Please see

http://lists.wikimedia.org/pipermail/mediawiki-announce/2012-August/000119.html

for details. I recommend upgrading to 1.19.2 as soon as possible.

All best,
Erik

-- 
Erik Möller
VP of Engineering and Product Development, Wikimedia Foundation

Support Free Knowledge: https://wikimediafoundation.org/wiki/Donate


More information about the kde-www mailing list