wikimedia foundation
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 205 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 13, 2018 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Stored i18n XSS in WikiLambda's VisualEditor integration
Unauthenticated remote code execution through wikitext in ExternalData
UploadWizard Flickr collection and set titles allow DOM XSS
Reflected XSS in Wikibase Special:SetLabel language validation
Cross-request disclosure of CentralAuth cookies in Wikipedia Android App
Missing permission check in the Translate sandbox doRemind action
TemplateSandbox can be abused for XSS by asking another user to preview a page with a certain sandbox prefix
Revision-deleted pages can be viewed through WikiLambda's action=edit and Special:ViewAbstract
"Checked by" label in page history should not be shown if the underlying review log entry is suppressed"
Stored i18n XSS in the Flow integration of Thanks
Monitor wikimedia foundation in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.