PT-2025-42560 · Mediawiki+1 · Mediawiki+1

Published

2025-01-01

·

Updated

2026-02-03

·

CVE-2025-61641

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions mediawiki (affected versions not specified)
Description The issue involves disabling the 'maxsize' parameter within the 'QueryAllPages' function when operating in 'miser' mode. This could potentially lead to unexpected behavior or resource consumption.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2025-61641
DLA-4355-1
DSA-6085-1
MGASA-2025-0260

Affected Products

Debian
Mediawiki