Low severityNVD Advisory· Published Sep 30, 2026· Updated Sep 30, 2026
CVE-2026-103438
CVE-2026-103438
Description
Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in The Wikimedia Foundation MediaWiki Wikistories extension allows Cross-Site Scripting (XSS).
This issue affects MediaWiki Wikistories extension: 1.46, 1.45, and 1.43.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 1.46, 1.45, 1.43
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.