PT-2026-5738 · Wikimedia Foundation · Checkuser

Publicado

2026-02-03

·

Atualizado

2026-02-03

·

CVE-2025-61650

CVSS v4.0

1.1

Baixa

VetorAV:N/AC:L/AT:N/PR:H/UI:P/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U
Name of the Vulnerable Software and Affected Versions Wikimedia Foundation CheckUser versions prior to 795bf333272206a0189050d975e94b70eb7dc507
Description The software contains an Improper Neutralization of Input During Web Page Generation issue, potentially leading to Cross-site Scripting (XSS). The issue is located in the src/Services/CheckUserUserInfoCardService.Php program files.
Recommendations Update to version 795bf333272206a0189050d975e94b70eb7dc507 or later.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-61650

Produtos afetados

Checkuser