PT-2020-16727 · Mediawiki · Cosmos Skin+1

Samantha Nguyen

·

Published

2020-10-22

·

Updated

2020-10-26

·

CVE-2020-27620

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions The Cosmos Skin for MediaWiki versions through 1.35.0
Description The issue is related to stored XSS due to MediaWiki messages not being properly escaped. This is associated with wfMessage and Html::rawElement, as shown by CosmosSocialProfile::getUserGroups.
Recommendations For versions through 1.35.0, update to a version that properly escapes MediaWiki messages to prevent stored XSS. As a temporary workaround, consider restricting the use of wfMessage and Html::rawElement until a patch is available. Restrict access to CosmosSocialProfile::getUserGroups to minimize the risk of exploitation.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-27620

Affected Products

Cosmos Skin
Mediawiki