Improper Input Validation in Wikimedia Foundation's Mediawiki - Tabs Extension
CVE-2025-32075

6.9MEDIUM

Key Information:

Vendor
CVE Published:
11 April 2025

Summary

An improper input validation vulnerability in the Mediawiki - Tabs Extension allows for code injection, which may enable malicious actors to execute arbitrary code. This flaw impacts versions ranging from 1.39 to 1.43 of the extension, posing a risk to the security and integrity of applications utilizing this software. Proper validation measures are essential to prevent exploitation by attackers.

Affected Version(s)

Mediawiki - Tabs Extension 1.39 <= 1.43

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

BlankEclair
.
CVE-2025-32075 : Improper Input Validation in Wikimedia Foundation's Mediawiki - Tabs Extension | SecurityVulnerability.io