CNNVD-202510-2828 Information

CNNVD ID

CNNVD-202510-2828

CVE-2025-62659

  • CNNVD Published: 2025-10-22

Description (Chinese)

MediaWiki - CookieConsent Extension是MediaWiki开源的一个获取用户是否同意使用cookie的扩展。 MediaWiki - CookieConsent Extension v0.1.0版本至v2.0.0之前版本存在安全漏洞,该漏洞源于输入中和不当,可能导致跨站脚本攻击。

Description (English)

MediaWiki - CookieConsent Extension is an access user of MediaWiki open source whether or not you agree to use the cookies extension. MediaWiki-CookieConsent Extension v. 0.1.0 to v2.0.0 had a security loophole, which originated in inappropriate input and could lead to a cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

维基媒体

Published

2025-10-22

Last Modified

2026-02-24

References

https://phabricator.wikimedia.org/T404475 https://access.redhat.com/security/cve/cve-2025-62659

Patch

https://phabricator.wikimedia.org/T404475

Share on: