Security Advisory

CVE-2026-0669

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-07 17:46:57
Last updated 2026-01-07 19:21:57
Assigner wikimedia-foundation
State PUBLISHED

Description

Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) vulnerability in Wikimedia Foundation MediaWiki - CSS extension allows Path Traversal.This issue affects MediaWiki - CSS extension: 1.44, 1.43, 1.39.