MediaWiki Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2023-36675
An issue was discovered in MediaWiki before 1.35.11 1.36.x through 1.38.x before 1.38.7 1.39.x before 1.39.4 and 1.40.x before 1.40.1. BlockLogFormatter.php in BlockLogFormatter allows XSS in the partial blocks feature.