PT-2025-42800 · Unknown+1 · Lastmodified Extension+1
Somerandomdeveloper
·
Published
2025-10-20
·
Updated
2025-10-20
·
CVE-2025-62693
CVSS v4.0
6.9
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L |
Name of the Vulnerable Software and Affected Versions
Mediawiki - LastModified Extension versions prior to 1.39
Description
The Mediawiki - LastModified Extension contains a flaw related to improper input handling during web page generation, potentially leading to Stored Cross-site Scripting (XSS). This issue allows for the injection of malicious scripts into web pages. The vulnerability exists due to insufficient sanitization of user-supplied input. The affected component is the LastModified Extension.
Recommendations
Update the Mediawiki - LastModified Extension to version 1.39 or later.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Lastmodified Extension
Mediawiki