Medium severity6.1NVD Advisory· Published Jan 12, 2024· Updated Jun 17, 2026
CVE-2024-23177
CVE-2024-23177
Description
An issue was discovered in the WatchAnalytics extension in MediaWiki before 1.40.2. XSS can occur via the Special:PageStatistics page parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- MediaWiki/WatchAnalyticsdescription
- Range: <1.40.2
Patches
Vulnerability mechanics
References
2- lists.wikimedia.org/hyperkitty/list/mediawiki-announce%40lists.wikimedia.org/message/TDBUBCCOQJUT4SCHJNPHKQNPBUUETY52/nvdPatchRelease Notes
- phabricator.wikimedia.org/T348979nvdExploitPatchVendor Advisory
News mentions
0No linked articles in our index yet.