Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation MediaWiki - UploadWizard extension allows Cross-Site Scripting (XSS).This issue affects MediaWiki - UploadWizard extension: 1.45, 1.44, 1.43, 1.39.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-0671.json"
[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "1.39"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "1.43"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "1.44"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "1.45"
}
]
}
]