Cross-Site Scripting Vulnerability in Wikimedia Foundation's Mediawiki - Refreshed Skin
CVE-2026-103045
Currently unrated
What is CVE-2026-103045?
An improper handling of user input during web page generation in Wikimedia Foundation's Mediawiki - Refreshed Skin allows for the possibility of stored cross-site scripting (XSS). This vulnerability can enable attackers to inject malicious scripts into webpages viewed by users, potentially compromising user data and site integrity. The issue is present in versions of Mediawiki - Refreshed Skin prior to 1.46.1, 1.45.5, and 1.43.10, highlighting the importance of updating affected systems to mitigate associated risks.
Affected Version(s)
Mediawiki - Refreshed skin 0 < 1.46.1, 1.45.5, 1.43.10
