High severity7.5NVD Advisory· Published Jan 7, 2026· Updated Jun 17, 2026
CVE-2026-0669
CVE-2026-0669
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Wikimedia Foundation MediaWiki - CSS extension allows Path Traversal.This issue affects MediaWiki - CSS extension: 1.44, 1.43, 1.39.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:css_project:css:-:*:*:*:*:mediawiki:*:*
- Range: 1.44, 1.43, 1.39
Patches
Vulnerability mechanics
References
2- gerrit.wikimedia.org/r/q/Ia15bf3f2e5a341868568492a736ac3dbf706c22envdPatch
- phabricator.wikimedia.org/T401526nvdExploitIssue Tracking
News mentions
0No linked articles in our index yet.