Логотип exploitDog
bind:CVE-2025-53370
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-53370

Количество 2

Количество 2

nvd логотип

CVE-2025-53370

7 месяцев назад

Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. From versions 1.9.4 to before 3.4.0, short descriptions set via the ShortDescription extension are inserted as raw HTML by the Citizen skin, allowing any user to insert arbitrary HTML into the DOM by editing a page. This issue has been patched in version 3.4.0.

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-prmv-7r8c-794g

7 месяцев назад

Citizen vulnerable to Stored XSS through short descriptions

CVSS3: 8.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-53370

Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. From versions 1.9.4 to before 3.4.0, short descriptions set via the ShortDescription extension are inserted as raw HTML by the Citizen skin, allowing any user to insert arbitrary HTML into the DOM by editing a page. This issue has been patched in version 3.4.0.

CVSS3: 8.6
0%
Низкий
7 месяцев назад
github логотип
GHSA-prmv-7r8c-794g

Citizen vulnerable to Stored XSS through short descriptions

CVSS3: 8.6
0%
Низкий
7 месяцев назад

Уязвимостей на страницу