Medium severity6.1NVD Advisory· Published Dec 22, 2023· Updated Jun 17, 2026
CVE-2023-51704
CVE-2023-51704
Description
An issue was discovered in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2. In includes/logging/RightsLogFormatter.php, group-*-member messages can result in XSS on Special:log/rights.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4Patches
Vulnerability mechanics
References
5- phabricator.wikimedia.org/T347726nvdExploitPatchVendor Advisory
- lists.debian.org/debian-lts-announce/2024/04/msg00018.htmlnvd
- lists.debian.org/debian-lts-announce/2024/09/msg00039.htmlnvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FU2FGUXXK6TMV6R52VRECLC6XCSQQISY/nvd
- lists.fedoraproject.org/archives/list/[email protected]/message/FU2FGUXXK6TMV6R52VRECLC6XCSQQISY/nvd
News mentions
0No linked articles in our index yet.