Security Advisory

CVE-2025-61650

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-03 00:15:24
Last updated 2026-02-03 21:06:17
Assigner wikimedia-foundation
State PUBLISHED

Description

Improper Neutralization of Input During Web Page Generation (XSS or Cross-site Scripting) vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files src/Services/CheckUserUserInfoCardService.Php. This issue affects CheckUser: from * before 795bf333272206a0189050d975e94b70eb7dc507.