MediaWiki Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2025-61638
Improper Neutralization of Input During Web Page Generation (XSS or 39Cross-site Scripting39) vulnerability in Wikimedia Foundation MediaWiki Wikimedia Foundation Parsoid. This vulnerability is associated with program files includes/parser/Sanitizer.Php src/Core/Sanitizer.Php. This issue affects MediaWiki: from before 1.39.14 1.43.4 1.44.1 Parsoid: from before 0.16.6 0.20.4 0.21.1.