CNNVD-202601-1580 Information

CNNVD ID

CNNVD-202601-1580

CVE-2026-22712

  • CNNVD Published: 2026-01-09

Description (Chinese)

Mediawiki - ApprovedRevs Extension是Mediawiki开源的一个内容质量控制插件。 Mediawiki - ApprovedRevs Extension 1.45版本、1.44版本、1.43版本和1.39版本存在安全漏洞,该漏洞源于输出编码或转义不当,可能导致输入数据操纵。

Description (English)

Mediawiki - Approved Revs Extension is a content quality control plugin for the Mediawiki open source. There is a security loophole in Mediawiki - Approved Revs Extension Version 1.45, Version 1.44, Version 1.43 and Version 1.39, which stems from inappropriate output coding or conversion, which may lead to input data manipulation.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

维基媒体

Published

2026-01-09

Last Modified

2026-02-24

References

https://gerrit.wikimedia.org/r/q/Iee1bf1cbc8a519899e7f9dde508856bd4e5a5d2a https://phabricator.wikimedia.org/T412068 https://access.redhat.com/security/cve/cve-2026-22712

Patch

https://www.mediawiki.org/wiki/Special:ExtensionDistributor/ApprovedRevs

Share on: