Author: bmearns
Description:
Wiki pages served up by the secure wikimedia server point to images on the /unsecured/ server, which is a privacy no-no. The links on the images correctly go through the secure server, but the images themselves have unsecured 'src' attributes, meaning a person who thinks they're connecting securely and privately to a wikimedia page actually has their browser fetching a bunch of images across an unsecured connection.
Version: unspecified
Severity: enhancement
URL: https://secure.wikimedia.org/wikipedia/en/wiki/Main_Page