Medium severity6.1NVD Advisory· Published Oct 6, 2021· Updated Jun 17, 2026
CVE-2021-42041
CVE-2021-42041
Description
An issue was discovered in CentralAuth in MediaWiki through 1.36.2. The rightsnone MediaWiki message was not being properly sanitized and allowed for the injection and execution of HTML and JavaScript via the setchange log.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- MediaWiki/CentralAuthdescription
Patches
Vulnerability mechanics
References
2- gerrit.wikimedia.org/r/q/I7aeaa6e4de5ccaa5eeb6bf4fb00c96b01d5fea35nvdPatchVendor Advisory
- phabricator.wikimedia.org/T291696nvdExploitPatchVendor Advisory
News mentions
0No linked articles in our index yet.