Medium severity5.9NVD Advisory· Published Jan 27, 2020· Updated Jun 17, 2026
CVE-2014-9481
CVE-2014-9481
Description
The Scribunto extension for MediaWiki allows remote attackers to obtain the rollback token and possibly other sensitive information via a crafted module, related to unstripping special page HTML.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Scribunto/Scribuntov5Range: n/a
Patches
Vulnerability mechanics
References
4- lists.wikimedia.org/pipermail/mediawiki-announce/2014-December/000173.htmlnvdPatchVendor Advisory
- www.openwall.com/lists/oss-security/2014/12/21/2nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2015/01/03/13nvdMailing ListThird Party Advisory
- phabricator.wikimedia.org/T73167nvdVendor Advisory
News mentions
0No linked articles in our index yet.