CNNVD-202602-065 Information

CNNVD ID

CNNVD-202602-065

CVE-2025-6596

  • CNNVD Published: 2026-02-02

Description (Chinese)

Wikimedia Vector是Wikimedia基金会的一个桌面端界面外观。 Wikimedia Vector存在安全漏洞,该漏洞源于对网页生成期间输入的中和不当,可能导致跨站脚本。以下版本受到影响:1.40.0至1.42.7之前版本、1.43.2版本和1.44.0版本。

Description (English)

Wikimedia Vector is a desktop interface for Wikimedia Foundation. Wikimedia Vector had a security loophole, which stemmed from the inaccuracy of the input made during the web page generation and could result in a cross-site script. The following versions were affected: 1.4.0 to 1.42.7 earlier, 1.4.3.2 and 1.44.0.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

维基媒体

Published

2026-02-02

Last Modified

2026-02-24

References

https://phabricator.wikimedia.org/T396685

Patch

https://phabricator.wikimedia.org/T396685

Share on: