Security Advisory

CVE-2025-32072

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-11 16:23:12
Last updated 2025-11-03 19:53:18
Assigner wikimedia-foundation
State PUBLISHED

Description

Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki Core - Feed Utils allows WebView Injection.This issue affects Mediawiki Core - Feed Utils: from 1.39 through 1.43.