All 4 CVE vulnerabilities found in Mediawiki - SecurePoll Extension, with AI-generated Chinese analysis, references, and POCs.
Vendor: Wikimedia Foundation
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-11937 | Stored XSS through a system message in SecurePoll CWE-79 | 6.1AI | MediumAI | 2025-10-18 |
| CVE-2025-53485 | SecurePoll: Unauthorized access to SetTranslationHandler allows arbitrary text changes CWE-862 | 5.3 | - | 2025-07-04 |
| CVE-2025-53484 | SecurePoll: Multiple locations vulnerable to Cross-Site Scripting (XSS) via unescaped input CWE-79 | 6.1 | - | 2025-07-04 |
| CVE-2025-53483 | SecurePoll: Multiple admin actions vulnerable to Cross-Site Request Forgery CWE-352 | 8.8 | - | 2025-07-04 |
All 4 known CVE vulnerabilities affecting Mediawiki - SecurePoll Extension with full Chinese analysis, references, and POCs where available.