MoinMoin Cross-site Scripting (XSS) vulnerability
        
  Moderate severity
        
          GitHub Reviewed
      
        Published
          May 17, 2022 
          to the GitHub Advisory Database
          •
          Updated Sep 27, 2024 
      
  
Description
        Published by the National Vulnerability Database
      Nov 10, 2016 
    
  
        Published to the GitHub Advisory Database
      May 17, 2022 
    
  
        Reviewed
      Apr 30, 2024 
    
  
        Last updated
      Sep 27, 2024 
    
  
MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation or crafted URL" approach, related to a "Cross Site Scripting (XSS)" issue affecting the
action=fckdialog&dialog=attachment(via page name) component.References