It's probably worth mentioning that there's a new project to create a MediaWiki-workalike engine that runs in a Java Servlets container. It's called JAMWiki, and it's here:
http://jamwiki.org/
I've played around with it a little and, while it's definitely Not There Yet, it's way ahead of 80% of existing Wiki engines. I'm going to be keeping an eye on it.
~Evan
And amusingly, it also has at least one of the exact same XSS vulnerabilities that used to be in MediaWiki ;-)
And yes, I have reported this to them, together with PoC, at http://jamwiki.org/wiki/en/Bug_Reports#XSS
Their implementation does look interesting though.
All the best, Nick.
wikitech-l@lists.wikimedia.org