All 3 CVE vulnerabilities found in Mediawiki - CampaignEvents Extension, with AI-generated Chinese analysis, references, and POCs.
Vendor: Wikimedia Foundation
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2026-39935 | XSS-via-i18n in localised wiki names CWE-79 | 6.1AI | MediumAI | 2026-04-07 |
| CVE-2026-0817 | CampaignEvents API missing authorization exposes meeting and chat URLs CWE-862 | 8.8 | - | 2026-01-09 |
| CVE-2025-53490 | Multiple XSS in CampaignEvents CWE-79 | 6.1AI | MediumAI | 2025-07-03 |
All 3 known CVE vulnerabilities affecting Mediawiki - CampaignEvents Extension with full Chinese analysis, references, and POCs where available.