Vulnerability Bulletins

DSA-3100 mediawiki - security update

   
Affected software Debian
 
A flaw was discovered in mediawiki, a wiki engine: cross-domain-policymangling allows an article editor to inject code into API consumersthat deserialize PHP representations of the page from the API.

More info:

https://www.debian.org/security/2014/dsa-3100