CVE-2026-0669

All FrameworksMediaWikiCWE-22CVE-2026-0669

CVE-2026-0669

State: PUBLISHED · Published: 2026-01-07 · Updated: 2026-01-07 · Assigner: wikimedia-foundation
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Wikimedia Foundation MediaWiki - CSS extension allows Path Traversal.This issue affects MediaWiki - CSS extension: 1.44, 1.43, 1.39.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2026/0xxx/CVE-2026-0669.json