Category Archives: MediaWiki

Need MediaWiki Upgraded?
We can upgrade your MediaWiki website for you.

Outdated MediaWiki Alerts
Get alerts when visiting web pages generated from outdated versions of MediaWiki in Firefox and Chrome with our web browser extension.

MediaWiki 1.19.7 and 1.20.6 Released

MediaWiki 1.19.7 and 1.20.6 were released yesterday. The new versions fix a security vulnerability that caused files uploaded in chunks through the API to not be run through security checks.

More information is available in the release announcement for 1.19.7 and 1.20.6.

Posted in MediaWiki, Security Update | Leave a comment

MediaWiki 1.19.6 and 1.20.5 Released

MediaWiki 1.19.6 and 1.20.5 were released yesterday. The new versions fix two security issues, a SVG script filtering bypass and issue that  “could lead to circumvention of two-factor authentication”.

More information is available in the release announcement for 1.19.6 and 1.20.5.

Posted in MediaWiki, Security Update | Leave a comment

MediaWiki 1.19.5 and 1.20.4 Released

MediaWiki 1.19.5 and 1.20.4 were released yesterday. The new versions fix three security related vulnerabilities. The vulnerabilities could allow for cross-site scripting (XSS) and XML external entity (XXE) processing when it should be prevented.

More information is available in the release announcement for 1.19.5 and 1.20.4.

Posted in MediaWiki, Security Update | Leave a comment

MediaWiki 1.19.4 and 1.20.3 Released

MediaWiki 1.19.4 and 1.20.3 were released today. The new versions fix three security related vulnerabilities. The vulnerabilities could allow arbitrary files to be read when non-default settings are in place and allow sysops to view full user objects

More information is available in the release announcement for 1.19.4 and 1.20.3.

Posted in MediaWiki, Security Update | Leave a comment

MediaWiki 1.20.2 Released

MediaWiki 1.20.2 was released yesterday. The new version corrects issues from the previous release.

More information is available in the release announcement.

Posted in MediaWiki | Leave a comment

Support Ends for MediaWiki 1.18.x

Support ended for MediaWiki 1.18.x at the end of November. Anyone still running 1.18.x should upgrade to either 1.19.x or 1.20.x. You can find more about MediaWiki’s version lifecycle here.

Posted in End of Support, MediaWiki | Leave a comment

MediaWiki 1.18.6, 1.19.3, and 1.20.1 Released

MediaWiki 1.18.6, 1.19.3, and 1.20.1 were released on Friday. The new versions include security fixes for a session fixation attack and an issue that could cause “recent changes and history pages to fail to display”. Version 1.20.1 also includes a fix for a security vulnerability that allows “HTML code to be injected into the “editfont” option”.

More information is available in the release announcement for 1.18.6,  1.19.3, and 1.20.1.

Posted in MediaWiki, Security Update | Leave a comment

MediaWiki 1.20 Released

MediaWiki 1.20 was released on Wednesday. The new version includes a number of improvements including improved internalization.

The new version now requires at least version 5.3.2 of MySQL.

It was also announced that support for MediaWiki 1.19.x will continue for 2 more years.

More information is available in the release announcement.

Posted in MediaWiki | Leave a comment

MediaWiki 1.18.5 and 1.19.2 Released

MediaWiki 1.18.5 and 1.19.2 were released last Friday. The new versions include security fixes for a stored cross-site scripting (XSS) vulnerability, DOM-based XSS vulnerabilities, a cross-site requst forgery (CSRF) vulnerability, and improper password data storage when using external authentication. Instructions on cleaning up password data improperly stored password by previous versions can be found here. It also includes for fixes for several bugs.

More information is available in the release announcement for 1.18.5 and 1.19.2.

Posted in MediaWiki, Security Update | Leave a comment

Support Ends for MediaWiki 1.17.x

Support ended for MediaWiki 1.17.x on June 22. Anyone still running 1.17.x should upgrade to either 1.18.x or 1.19.x. You can find more about MediaWiki’s version lifecycle here.

Posted in End of Support, MediaWiki | Leave a comment