HIGH
In the OAuth2 Client extension before 0.4 for MediaWiki, a CSRF vulnerability exists due to the OAuth2 state parameter not being checked in the callback function
Published Aug 19, 2019
8.8
HIGHCVSS 3.1
EPSS 1.16%
Description
Affected products
Remediation
References (6)
Change history (0)
No recorded changes yet.