CVE-2014-2244 | MediaWiki up to 1.19.12/1.20.x/1.21.6/1.22.3 api.php formathtml cross site scripting (Nessus ID 72916 / ID 121915)
A vulnerability classified as problematic was found in MediaWiki up to 1.19.12/1.20.x/1.21.6/1.22.3. Affected by this vulnerability is the function formathtml of the file api.php. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2014-2244. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.