Improper Input Validation in Wikimedia Foundation's Mediawiki - Tabs Extension
CVE-2025-32075
6.9MEDIUM
Summary
An improper input validation vulnerability in the Mediawiki - Tabs Extension allows for code injection, which may enable malicious actors to execute arbitrary code. This flaw impacts versions ranging from 1.39 to 1.43 of the extension, posing a risk to the security and integrity of applications utilizing this software. Proper validation measures are essential to prevent exploitation by attackers.
Affected Version(s)
Mediawiki - Tabs Extension 1.39 <= 1.43
References
CVSS V4
Score:
6.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
BlankEclair