Skip to main content

Vendor/product archive

widgets_project / widgets CVEs

Beta · best-effort

2 CVEs tagged to widgets_project / widgets0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2020-9382

Published Feb 24, 2020

An issue was discovered in the Widgets extension through 1.4.0 for MediaWiki. Improper title sanitization allowed for the execution of any wiki page as a widget (as defined by thi…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-6737

Published Sep 1, 2015

Cross-site scripting (XSS) vulnerability in the Widgets extension for MediaWiki allows remote attackers to inject arbitrary web script or HTML via vectors involving base64 encoded…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1