Wikimedia Bugzilla is closed!

Wikimedia migrated from Bugzilla to Phabricator. Bug reports are handled in Wikimedia Phabricator.
This static website is read-only and for historical purposes. It is not possible to log in and except for displaying bug reports and their history, links might be broken. See T30534, the corresponding Phabricator task for complete and up-to-date bug report information.

Back to bug 28534

Who When What Removed Added
masatokinugawa 2011-04-14 09:52:08 UTC URL http://www.mediawiki.org/w/api%2Ephp?action=query&meta=siteinfo&format=json&siprop=%3Cbody%20onload=alert(1)%3E.shtml
mah 2011-04-14 17:49:08 UTC Priority Low Highest
CC mah
tstarling 2011-04-27 14:47:24 UTC CC innocentkiller, sam
tstarling 2011-05-05 05:40:28 UTC Group security
Component General General/Unknown
Version unspecified 1.16.4
Assignee tstarling wikibugs-l
Product Security MediaWiki
p858snake 2011-05-07 09:15:34 UTC Status NEW RESOLVED
CC p858snake
Resolution --- FIXED
brion 2011-06-07 18:13:58 UTC Status RESOLVED REOPENED
Resolution FIXED ---
krinklemail 2011-06-10 01:08:34 UTC Summary XSS in MediaWiki XSS in MediaWiki API (through invalid property name)
mah 2011-06-15 19:47:28 UTC Status REOPENED RESOLVED
Resolution --- FIXED
Assignee wikibugs-l tstarling
krinklemail 2012-04-12 13:51:55 UTC Version 1.16.4 1.16
krinklemail 2012-04-12 13:56:08 UTC Version 1.16 1.16.x

Back to bug 28534