High severityNVD Advisory· Published Jan 30, 2026· Updated Apr 15, 2026
CVE-2025-11175
CVE-2025-11175
Description
Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection') vulnerability in The Wikimedia Foundation Mediawiki - DiscussionTools Extension allows Regular Expression Exponential Blowup.This issue affects Mediawiki - DiscussionTools Extension: 1.44, 1.43.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: = 1.44, 1.43
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.