PT-2025-52556 · Mediawiki+1 · Mediawiki+1

Published

2025-01-01

·

Updated

2026-02-03

·

CVE-2025-67479

CVSS v4.0

0.0

None

VectorAV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions MediaWiki versions prior to 1:1.39.17-1deb12u1 MediaWiki versions prior to 1:1.43.6+dfsg-1deb13u1
Description Multiple security issues were identified in MediaWiki, a website engine used for collaborative work. These issues could lead to cross-site scripting, information disclosure, missing rate limiting, or denial of service.
Recommendations Upgrade mediawiki packages to version 1:1.39.17-1deb12u1. Upgrade mediawiki packages to version 1:1.43.6+dfsg-1deb13u1.

Fix

Related Identifiers

CVE-2025-67479
DLA-4428-1
DSA-6085-1

Affected Products

Debian
Mediawiki