XSS Vulnerability in MobileFrontend Extension's Edit Summary Field

XSS Vulnerability in MobileFrontend Extension's Edit Summary Field

CVE-2019-14807 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the MobileFrontend extension 1.31 through 1.33 for MediaWiki, XSS exists within the edit summary field in includes/specials/MobileSpecialPageFeed.php.

Learn more about our Mobile App Penetration Testing.