Medium severity6.1NVD Advisory· Published May 2, 2022· Updated Jun 17, 2026
CVE-2022-29969
CVE-2022-29969
Description
The RSS extension before 2022-04-29 for MediaWiki allows XSS via an rss element (if the feed is in $wgRSSUrlWhitelist and $wgRSSAllowLinkTag is true).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: <2022-04-29
Patches
Vulnerability mechanics
References
2- gerrit.wikimedia.org/r/c/787807nvdPatchThird Party Advisory
- phabricator.wikimedia.org/T307028nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.