| CVE-2025-61645 |
BDSA-2025-13161 |
Medium |
Feb 03, 2026 |
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki. This vulne
more...
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/pager/CodexTablePager.Php.
This issue affects MediaWiki: from * before 1.44.1.
less...
|
1.43.8, 1.43.7, 1.39.17, 1.39.16, 1.43.6, 1.43.5, 1.39.15, 1.39.14, 1.43.4, 1.44.0
|
| CVE-2025-61640 |
|
Medium |
Feb 03, 2026 |
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki. This vulne
more...
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files resources/src/mediawiki.Rcfilters/ui/RclToOrFromWidget.Js.
This issue affects MediaWiki: from * before 1.39.14, 1.43.4, 1.44.1.
less...
|
1.43.8, 1.43.7, 1.39.17, 1.39.16, 1.43.6, 1.43.5, 1.39.15, 1.44.0, 1.43.3, 1.43.2
|
| CVE-2025-61639 |
|
Medium |
Feb 03, 2026 |
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with progr
more...
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/logging/ManualLogEntry.Php, includes/recentchanges/RecentChangeFactory.Php, includes/recentchanges/RecentChangeStore.Php.
This issue affects MediaWiki: from * before 1.39.14, 1.43.4, 1.44.1.
less...
|
1.43.8, 1.43.7, 1.39.17, 1.39.16, 1.43.6, 1.43.5, 1.39.15, 1.44.0, 1.43.3, 1.43.2
|
| CVE-2025-61638 |
|
Medium |
Feb 03, 2026 |
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki, Wikimedia
more...
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki, Wikimedia Foundation Parsoid. This vulnerability is associated with program files includes/parser/Sanitizer.Php, src/Core/Sanitizer.Php.
This issue affects MediaWiki: from * before 1.39.14, 1.43.4, 1.44.1; Parsoid: from * before 0.16.6, 0.20.4, 0.21.1.
less...
|
1.43.8, 1.43.7, 1.39.17, 1.39.16, 1.43.6, 1.43.5, 1.39.15, 1.44.0, 1.43.3, 1.43.2
|
| CVE-2025-61637 |
|
Medium |
Feb 03, 2026 |
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki. This vulne
more...
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files resources/src/mediawiki.Action/mediawiki.Action.Edit.Preview.Js, resources/src/mediawiki.Page.Preview.Js.
This issue affects MediaWiki: from * before 1.39.14, 1.43.4, 1.44.1.
less...
|
1.43.8, 1.43.7, 1.39.17, 1.39.16, 1.43.6, 1.43.5, 1.39.15, 1.44.0, 1.43.3, 1.43.2
|
| CVE-2025-61636 |
|
Medium |
Feb 03, 2026 |
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki. This vulne
more...
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/htmlform/fields/HTMLButtonField.Php.
This issue affects MediaWiki: from * before 1.39.14, 1.43.4, 1.44.1.
less...
|
1.43.8, 1.43.7, 1.39.17, 1.39.16, 1.43.6, 1.43.5, 1.39.15, 1.44.0, 1.43.3, 1.43.2
|
| CVE-2025-61634 |
|
Low |
Feb 03, 2026 |
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Rest/Handler/PageHTMLHandler.Php.
This i
more...
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Rest/Handler/PageHTMLHandler.Php.
This issue affects MediaWiki: from * before 1.39.14, 1.43.4, 1.44.1.
less...
|
1.43.8, 1.43.7, 1.39.17, 1.39.16, 1.43.6, 1.43.5, 1.39.15, 1.44.0, 1.43.3, 1.43.2
|