CVE-2025-62663

All FrameworksMediaWikiCWE-79CVE-2025-62663

CVE-2025-62663

State: PUBLISHED · Published: 2025-10-18 · Updated: 2025-10-20 · Assigner: wikimedia-foundation
Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - UploadWizard Extension allows Stored XSS.This issue affects Mediawiki - UploadWizard Extension: from master before 1.39.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/62xxx/CVE-2025-62663.json