Related Vulnerabilities: CVE-2017-0363  

The Special:UserLogin page in MediaWiki < 1.28.1 has an open redirect issue.

Severity Medium

Remote Yes

Type Open redirect

Description

The Special:UserLogin page in MediaWiki < 1.28.1 has an open redirect issue.

AVG-236 mediawiki 1.28.0-1 1.28.1-1 High Fixed

07 Apr 2017 ASA-201704-3 AVG-236 mediawiki High multiple issues

https://phabricator.wikimedia.org/T109140
https://lists.wikimedia.org/pipermail/mediawiki-announce/2017-April/000207.html