XSS Vulnerability in Wikimedia Foundation CheckUser Product
CVE-2025-61650
1.1LOW
What is CVE-2025-61650?
The CheckUser product from Wikimedia Foundation has a vulnerability where improper neutralization of user input during web page generation could allow attackers to execute arbitrary scripts in the context of another user's session. This issue particularly concerns versions prior to a specific commit, highlighting the importance of secure coding practices and diligent software updates to mitigate risks associated with user-generated content.
Affected Version(s)
CheckUser * < 795bf333272206a0189050d975e94b70eb7dc507
