Vulnerability Description
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in The Wikimedia Foundation Mediawiki - LanguageSelector Extension allows Code Injection.This issue affects Mediawiki - LanguageSelector Extension: from master before 1.39.
Related Weaknesses (CWE)
References
- https://gerrit.wikimedia.org/r/q/I338288e756de4e58a3f1f02a9c205b37f4927935
- https://phabricator.wikimedia.org/T399724
FAQ
What is CVE-2025-62697?
CVE-2025-62697 is a documented vulnerability. Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in The Wikimedia Foundation Mediawiki - LanguageSelector Extension allows Code Injectio...
How severe is CVE-2025-62697?
CVSS scoring is not yet available for CVE-2025-62697. Check NVD for updates.
Is there a patch for CVE-2025-62697?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.