CVE-2025-32080: Cross-origin data leak in mobilefrontend via lazy load images
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia Foundation Mediawiki - Mobile Frontend Extension allows Shared Resource Manipulation.This issue affects Mediawiki - Mobile Frontend Extension: from 1.39 through 1.43.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-32080?
CVE-2025-32080 is classified as a vulnerability that can lead to exposure of sensitive information to unauthorized actors.
How do I fix CVE-2025-32080?
To fix CVE-2025-32080, update the Mediawiki - Mobile Frontend Extension to a version above 1.43.
What versions are affected by CVE-2025-32080?
CVE-2025-32080 affects Mediawiki - Mobile Frontend Extension versions from 1.39 to 1.43.
What can be compromised due to CVE-2025-32080?
CVE-2025-32080 can lead to the unauthorized exposure of sensitive information within the Mediawiki environment.
Who is affected by CVE-2025-32080?
Organizations using versions of the Mediawiki - Mobile Frontend Extension between 1.39 and 1.43 are affected by CVE-2025-32080.