This page lists publicly disclosed CVE vulnerabilities affecting wikimedia wikimedia-extensions-css (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2024-47841 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Path Traversal.This issue affects Mediawiki - CSS Extension: from 1.42.X before 1.42.2, from 1.41.X before 1.41.3, from 1.39.X before 1.39.9. | c4f26cc8-17ff-4c99-b5e2-38fc1793eacc | 6.9 | 28.91% | 2024-10-05 | 2024-10-16 |
| CVE-2024-47845 | Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2. | c4f26cc8-17ff-4c99-b5e2-38fc1793eacc | 6.9 | 0.40% | 2024-10-05 | 2024-10-23 |