|
|
| |
|
| |
mediawiki: information leak
| Package(s): | mediawiki |
CVE #(s): | CVE-2013-4302
|
| Created: | September 13, 2013 |
Updated: | September 23, 2013 |
| Description: |
From the Debian advisory:
It was discovered that in Mediawiki, a wiki engine, several API modules allowed anti-CSRF tokens to be accessed via JSONP. These tokens protect against cross site request forgeries and are confidential. |
| Alerts: |
|
( Log in to post comments)
|
|
|