Known vulnerabilities in mediawiki (Debian package) - page 2

Vendor: Debian
Software CPE: cpe:2.3:o:debian:mediawiki_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 35
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting mediawiki (Debian package) mediawiki (Debian package) is affected by 35 known vulnerabilities: 1 high, 13 medium, 21 low Critical High Medium Low

Vulnerabilities (35)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU52030 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-30157
CWE-79 Low
No
No
1:1.31.14-1~deb10u1 12.04.2021 SB2021041202
SB2021041203
SB2021071701
#VU52029 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-30154
CWE-79 Low
No
No
1:1.31.14-1~deb10u1 12.04.2021 SB2021041202
SB2021041203
SB2021071701
#VU52028 - Improper Access Control
CVE-2021-30158
CWE-284 Medium
No
No
1:1.31.14-1~deb10u1 12.04.2021 SB2021041202
SB2021041203
SB2021071701
#VU52027 - Improper Access Control
CVE-2021-30159
CWE-284 Medium
No
No
1:1.31.14-1~deb10u1 12.04.2021 SB2021041202
SB2021041203
SB2021071701
#VU52026 - Improper Access Control
CVE-2021-30155
CWE-284 Medium
No
No
1:1.31.14-1~deb10u1 12.04.2021 SB2021041202
SB2021041203
SB2021071701
#VU49100 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-35475
CWE-79 Low
No
No
1.31.12-1~deb10u1 18.12.2020 SB2020122119
SB2020122120
SB2021011261
and 1 more
#VU49102 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-35479
CWE-79 Low
No
No
1.31.12-1~deb10u1 18.12.2020 SB2020122119
SB2020122120
SB2021011261
and 1 more
#VU49103 - Exposure of sensitive information to an unauthorized actor
CVE-2020-35477
CWE-200 Low
No
No
1.31.12-1~deb10u1 18.12.2020 SB2020122119
SB2020122120
SB2021011261
and 1 more
#VU49104 - Exposure of sensitive information to an unauthorized actor
CVE-2020-35480
CWE-200 Low
No
No
1.31.12-1~deb10u1 18.12.2020 SB2020122119
SB2020122120
SB2021011261
and 1 more
#VU26568 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-10960
CWE-79 Low
No
No
1:1.31.7-1~deb10u1 03.04.2020 SB2020040312
SB2020040313
#VU23832 - Permissions, Privileges, and Access Controls
CVE-2019-19709
CWE-264 Low
No
No
1:1.27.7-1~deb9u3, 1:1.31.6-1~deb10u1 28.12.2019 SB2019122805
SB2019122806
#VU21941 - Exposure of sensitive information to an unauthorized actor
CVE-2019-16738
CWE-200 Low
No
No
1:1.27.7-1~deb9u2, 1:1.31.4-1~deb10u1 19.10.2019 SB2019101902
SB2019101903
SB2019100832
and 1 more
#VU14827 - Improper Access Control
CVE-2018-0505
CWE-284 Low
No
No
1:1.27.5-1~deb9u1 21.09.2018 SB2018092102
SB2018092201
SB2019101802
and 5 more
#VU14826 - Improper Access Control
CVE-2018-0504
CWE-284 Low
No
No
1:1.27.5-1~deb9u1 21.09.2018 SB2018092102
SB2018092201
SB2019102908
and 4 more
#VU14825 - Permissions, Privileges, and Access Controls
CVE-2018-0503
CWE-264 Low
No
No
1:1.27.5-1~deb9u1 21.09.2018 SB2018092102
SB2018092201
SB2019101802
and 5 more


Showing elements 21 - 40 out of 35