Security auditing and response
From MediaWiki.org
Security auditing and response
Inspection of code and training of developers
| Group: | Wikimedia Platform Engineering |
| Start: | |
| End: | |
| Team: | |
| Lead: | Chris Steipp |
| Status: | See updates |
Contents |
Status [edit]
[edit status] • [add new]
We released the MediaWiki 1.19.5 and 1.20.4 security releases on April 15th.
Rationale [edit]
Insecure code sucks :-)
Review queue [edit]
Wikibase client LinkItem- Done- User Metrics API - Re-reviewing fixes in Dev Env
EasyRDF (for Wikidata)- Done- Twig (for use with Fundraiser code) v1.13 (https://gerrit.wikimedia.org/r/#/admin/projects/wikimedia/fundraising/twig)
- Limn
- Kraken
- GLAM Upload
- Ex:OpenID
This list may not be complete (possibly due to oversight, possibly due to security reasons for not putting this out there), and may not be in priority order.