CNNVD-202510-2828 Information
Oct 22, 2025
cve
CNNVD ID
CNNVD-202510-2828
Related CVE
- CNNVD Published: 2025-10-22
Description (Chinese)
MediaWiki - CookieConsent Extension是MediaWiki开源的一个获取用户是否同意使用cookie的扩展。 MediaWiki - CookieConsent Extension v0.1.0版本至v2.0.0之前版本存在安全漏洞,该漏洞源于输入中和不当,可能导致跨站脚本攻击。
Description (English)
MediaWiki - CookieConsent Extension is an access user of MediaWiki open source whether or not you agree to use the cookies extension. MediaWiki-CookieConsent Extension v. 0.1.0 to v2.0.0 had a security loophole, which originated in inappropriate input and could lead to a cross-site script attack.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
维基媒体
Published
2025-10-22
Last Modified
2026-02-24
References
https://phabricator.wikimedia.org/T404475 https://access.redhat.com/security/cve/cve-2025-62659
Patch
https://phabricator.wikimedia.org/T404475
Share on: