Description
Semantic MediaWiki is a free, open-source extension to MediaWiki that lets users store and query data within the wiki's pages. Versions starting in 3.1.0 and prior to 7.0.0 insert the unsanitized value of a data attribute into the DOM as HTML, allowing for stored XSS through wikitext. Version 7.0.0 patches the issue.
Published: 2026-09-18
Score: 8.6 High
EPSS: < 1% Very Low
KEV: No
Impact: Stored Cross‑Site Scripting
Action: Immediate Patch
AI Analysis

Impact

Semantic MediaWiki is an open‑source extension that allows data storage within wiki pages. A flaw in versions from 3.1.0 up to but not including 7.0.0 caused the extension to insert the value of a data attribute directly into the HTML DOM without sanitization. This permits stored cross‑site scripting when an attacker injects malicious wikitext. The resulting script runs in the browser of any user viewing the vulnerable page, potentially leading to credential theft, session hijacking, or defacement. This is a classic stored XSS weakness, identified as CWE‑79. Based on the description, it is inferred that the attacker must be able to edit page content to inject the malicious data attribute; unauthenticated editing is not explicitly stated, but the flaw exists in the rendering path that is executed for all page views.

Affected Systems

SemanticMediaWiki extension for MediaWiki. All installations running any version from 3.1.0 through the 6.x releases are affected. Version 7.0.0 and later contain the patch that removes the unsanitized data attribute handling.

Risk and Exploitability

The CVSS base score of 8.6 indicates high severity. The EPSS score of < 1% indicates a low but non‑zero probability of exploitation. The vulnerability is not listed in the CISA KEV catalog, meaning no confirmed widespread active exploitation has been reported. Based on the description, it is inferred that the vulnerability can be triggered by adding malicious wikitext during an editing operation, after which the malicious script is stored and runs for any user who views the page. Because the flaw is stored, it can be abused repeatedly unless mitigated, and the lack of an official workaround means that patching is the only reliable defense.

Generated by OpenCVE AI on September 19, 2026 at 17:54 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade SemanticMediaWiki to version 7.0.0 or later to remove the unsanitized data attribute handling.
  • Until the upgrade can be performed, limit editing of pages that include custom data attributes to trusted users or disable the extension’s rendering of such attributes.
  • Monitor edit histories for unexpected data attribute usage and review pages for embedded scripts to detect exploitation attempts.

Generated by OpenCVE AI on September 19, 2026 at 17:54 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-hg8h-557g-q8pp Semantic MediaWiki vulnerable to stored XSS through wikitext via improper use of non-reserved data attributes
History

Sat, 19 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
First Time appeared Semantic-mediawiki
Semantic-mediawiki semantic Mediawiki
Vendors & Products Semantic-mediawiki
Semantic-mediawiki semantic Mediawiki

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 16:15:00 +0000

Type Values Removed Values Added
Description Semantic MediaWiki is a free, open-source extension to MediaWiki that lets users store and query data within the wiki's pages. Versions starting in 3.1.0 and prior to 7.0.0 insert the unsanitized value of a data attribute into the DOM as HTML, allowing for stored XSS through wikitext. Version 7.0.0 patches the issue.
Title Semantic MediaWiki vulnerable to stored XSS through wikitext via improper use of non-reserved data attributes
Weaknesses CWE-79
References
Metrics cvssV3_1

{'score': 8.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L'}


Subscriptions

Semantic-mediawiki Semantic Mediawiki
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-18T17:23:49.754Z

Reserved: 2025-09-29T20:25:16.182Z

Link: CVE-2025-61682

cve-icon Vulnrichment

Updated: 2026-09-18T17:23:45.520Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-18T16:17:03.717

Modified: 2026-09-24T21:22:19.873

Link: CVE-2025-61682

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T22:15:05Z

Weaknesses
  • CWE-79

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')