PT-2025-42556 · Mediawiki+2 · Mediawiki+2

Published

2025-01-01

·

Updated

2026-04-20

·

CVE-2025-61637

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions mediawiki (affected versions not specified)
Description The software contains a flaw that allows an attacker to escape three system messages used by live preview. This could potentially lead to unauthorized actions or information disclosure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-07373
CVE-2025-61637
DSA-6085-1

Affected Products

Debian
Red Os
Mediawiki