CVE-2025-62697None▾ SunlitImproper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in The Wikimedia Foundation Mediawiki - LanguageSelector Extension allows Code Injection.This issue affects Mediawiki - Lang…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 2.8 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.3%
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in The Wikimedia Foundation Mediawiki - LanguageSelector Extension allows Code Injection.This issue affects Mediawiki - LanguageSelector Extension: from master before 1.39.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-11944Medium· 4.7A vulnerability was determined in givanz Vvveb up to 1.0.7.3
CVE-2025-11911Medium· 6.3A vulnerability was detected in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
CVE-2025-11912Medium· 6.3A flaw has been found in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
CVE-2025-11909Medium· 6.3A weakness has been identified in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
CVE-2025-11910Medium· 6.3A security vulnerability has been detected in Shenzhen Ruiming Technology Streamax Crocus 1.3.40
CVE-2025-11404Medium· 6.3A vulnerability was determined in SourceCodester Hotel and Lodge Management System 1.0