CVE-2026-22714: i18n XSS, DoS and config SQLI in Monaco
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - Monaco Skin allows Cross-Site Scripting (XSS).This issue affects Mediawiki - Monaco Skin: 1.45, 1.44, 1.43, 1.39.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-22714?
CVE-2026-22714 is categorized as a medium severity vulnerability due to its potential to exploit Cross-Site Scripting (XSS).
How do I fix CVE-2026-22714?
To fix CVE-2026-22714, you should upgrade the Mediawiki - Monaco Skin to the latest version that addresses this XSS vulnerability.
What versions of Mediawiki - Monaco Skin are affected by CVE-2026-22714?
CVE-2026-22714 affects Mediawiki - Monaco Skin versions 1.39 to 1.45.
What type of vulnerability is CVE-2026-22714?
CVE-2026-22714 is an improper neutralization of input during web page generation, leading to a Cross-Site Scripting (XSS) vulnerability.
Is CVE-2026-22714 actively being exploited?
While there is no specific information on ongoing exploits, XSS vulnerabilities like CVE-2026-22714 are commonly targeted and should be addressed promptly.