Critical security vulnerability in MediaWiki 1.19.1

Sayak Banerjee sayakb at kde.org
Mon Sep 10 14:58:29 UTC 2012


Hi Erik,

Thanks for the notification, it has now been upgraded to 1.19.2
*

Regards,
Sayak Banerjee
SE (Retail), Infosys Ltd.
Webmaster, KDE Project
Official: sayak_banerjee at infosys.com, sayakb at kde.org
Personal: mail at sayakbanerjee.com
*



On Wed, Sep 5, 2012 at 3:04 AM, Erik Moeller <erik at wikimedia.org> wrote:

> Hi KDE web team,
>
> the MediaWiki version running on userbase.kde.org has a critical
> security vulnerability allowing trivial HTML/JS injection. Please see
>
>
> http://lists.wikimedia.org/pipermail/mediawiki-announce/2012-August/000119.html
>
> for details. I recommend upgrading to 1.19.2 as soon as possible.
>
> All best,
> Erik
>
> --
> Erik Möller
> VP of Engineering and Product Development, Wikimedia Foundation
>
> Support Free Knowledge: https://wikimediafoundation.org/wiki/Donate
> _______________________________________________
> kde-www mailing list
> kde-www at kde.org
> https://mail.kde.org/mailman/listinfo/kde-www
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mail.kde.org/mailman/private/kde-www/attachments/20120910/5e5f804b/attachment.html>


More information about the kde-www mailing list