Medium severity6.1NVD Advisory· Published Dec 24, 2021· Updated Jun 17, 2026
CVE-2021-45472
CVE-2021-45472
Description
In MediaWiki through 1.37, XSS can occur in Wikibase because an external identifier property can have a URL format that includes a $1 formatter substitution marker, and the javascript: URL scheme (among others) can be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- MediaWiki/MediaWikidescription
- Range: <1.37
- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.