CVE-2025-32073: System message XSS in HTMLTags
Published Apr 11, 2025
·Updated
Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - HTML Tags allows Cross-Site Scripting (XSS).This issue affects Mediawiki - HTML Tags: from 1.39 through 1.43.
Affected Software
1 affected component
Wikimedia Foundation Mediawiki - HTML Tags>=1.39<=1.43
Event History
Apr 11, 2025
CVE Published
via MITRE·04:22 PM
Data Sourced
via MITRE·04:22 PM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-32073?
The severity of CVE-2025-32073 is classified as high due to its potential for Cross-Site Scripting (XSS) exploitation.
2
How do I fix CVE-2025-32073?
To fix CVE-2025-32073, you should update your Mediawiki - HTML Tags to a version higher than 1.43.
3
What versions are affected by CVE-2025-32073?
CVE-2025-32073 affects Mediawiki - HTML Tags versions from 1.39 to 1.43.
4
What type of vulnerability is CVE-2025-32073?
CVE-2025-32073 is an improper input validation vulnerability that enables Cross-Site Scripting (XSS).
5
Can CVE-2025-32073 affect user data security?
Yes, CVE-2025-32073 can compromise user data security by allowing attackers to inject malicious scripts.