Security Advisory

CVE-2026-22712

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-09 00:06:22
Last updated 2026-01-09 19:15:28
Assigner wikimedia-foundation
State PUBLISHED

Description

Improper Encoding or Escaping of Output due to magic word replacement in ParserAfterTidy vulnerability in The Wikimedia Foundation Mediawiki - ApprovedRevs Extension allows Input Data Manipulation.This issue affects Mediawiki - ApprovedRevs Extension: 1.45, 1.44, 1.43, 1.39.