Description
Cross-site request forgery (CSRF) vulnerability in Special:CreateCategory in the SemanticForms extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to hijack the authentication of users for requests that create categories via unspecified vectors.
Remediation
References
Related Vulnerabilities
WordPress Plugin A to Z Category Listing 'R' Parameter SQL Injection (1.3)
WordPress Plugin zM Ajax Login & Register Multiple Vulnerabilities (1.0.9)
WordPress Plugin Media Usage Cross-Site Scripting (0.0.4)
WordPress Plugin Rich Counter Cross-Site Scripting (1.1.5)
WordPress Plugin Super Interactive Maps for WordPress Arbitrary File Upload (1.9)