Critical security vulnerability in MediaWiki 1.19.1
Erik Moeller
erik at wikimedia.org
Tue Sep 4 21:34:28 UTC 2012
Hi KDE web team,
the MediaWiki version running on userbase.kde.org has a critical
security vulnerability allowing trivial HTML/JS injection. Please see
http://lists.wikimedia.org/pipermail/mediawiki-announce/2012-August/000119.html
for details. I recommend upgrading to 1.19.2 as soon as possible.
All best,
Erik
--
Erik Möller
VP of Engineering and Product Development, Wikimedia Foundation
Support Free Knowledge: https://wikimediafoundation.org/wiki/Donate
More information about the kde-www
mailing list