天下漏洞,尽知其名
HIGH

CVE-2026-102796 MediaWiki UserPageViewTracker 扩展 SQL 注入漏洞

原始情报

Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in Wikimedia Foundation Mediawiki – UserPageViewTracker Extension allows SQL Injection.

This issue affects Mediawiki – UserPageViewTracker Extension: from * before 1.46.1, 1.45.5, 1.43.10.