CVE-2016-9119 on Ubuntu 16.04 LTS (xenial) - medium.
Description:
Cross-site scripting (XSS) vulnerability in the link dialogue in GUI editor in MoinMoin before 1.9.8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.