Commit graph

4 commits

Author SHA1 Message Date
martti
fd08967cfc Updated www/mediawiki to 1.13.4
A number of cross-site scripting (XSS) security vulnerabilities were
discovered in the web-based installer (config/index.php). These
vulnerabilities all require a live installer -- once the installer has been
used to install a wiki, it is deactivated.

Note that cross-site scripting vulnerabilities can be used to attack any
website in the same cookie domain. So if you have an uninstalled copy of
MediaWiki on the same site as an active web service, MediaWiki could be used
to attack the active service.  If you are hosting an old copy of MediaWiki
that you have never installed, we advise you to remove it from the web.
2009-02-07 11:09:37 +00:00
martti
b00a33c4c0 Updated www/mediawiki to 1.13.3
This is a security release of MediaWiki 1.13.3. Some of the security issues
affect *all* versions of MediaWiki except the versions released today, so
all site administrators are encouraged to upgrade.

http://lists.wikimedia.org/pipermail/mediawiki-announce/2008-December/000080.html
2008-12-15 11:54:34 +00:00
martti
b049070140 Set myself as the maintainer. 2008-11-26 18:20:10 +00:00
martti
1158a1ccbf MediaWiki is free server-based software which is licensed under the GNU
General Public License (GPL). It's designed to be run on a large server
farm for a website that gets millions of hits per day. MediaWiki is an
extremely powerful, scalable software and a feature-rich wiki implementation,
that uses PHP to process and display data stored in its MySQL database.
2008-11-26 18:13:18 +00:00