includes/Specials/SpecialClaimMentee.php:200 SecurityCheck-XSS Calling method \MediaWiki\Message\Message::rawParam() in \GrowthExperiments\Specials\SpecialClaimMentee::onSuccess that outputs using tainted argument #1. (Caused by: annotations in \MediaWiki\Message\Message::rawParam) (Caused by: includes/Specials/SpecialClaimMentee.php +192; includes/Specials/SpecialClaimMentee.php +216; includes/Specials/SpecialClaimMentee.php +214; ../../includes/user/User.php +636; ../../includes/user/UserFactory.php +113; ../../includes/user/UserFactory.php +109; ../../includes/user/User.php +293; ../../includes/user/User.php +1546; ../../includes/user/User.php +448; annotations in \Wikimedia\Rdbms\SelectQueryBuilder::fetchRow; ../../includes/user/User.php +457; ../../includes/user/User.php +1026; annotations in \MediaWiki\Language\Language::listToText)
Seen in some GrowthExperiments builds like this one