Description
Semantic MediaWiki is a free, open-source extension to MediaWiki that lets users store and query data within the wiki's pages. Prior to version 7.2.0, `sep` was inserted verbatim into HTML cell joins. This made it possible to inject HTML through the separator value. Version 7.2.0 fixes the issue.
Published: 2026-09-18
Score: 6.1 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Cross‑Site Scripting
Action: Update to 7.2.0
AI Analysis

Impact

The vulnerability resides in the way Semantic MediaWiki processes the "sep" parameter supplied to the Special:Ask table. Prior to version 7.2.0, the value of this parameter was inserted directly into the generated HTML without sanitization, allowing an attacker to inject arbitrary HTML or JavaScript. The weakness is a reflected XSS flaw, formally identified as CWE‑79. This allows a malicious user to steal session cookies, deface pages, or carry out other malicious actions in the context of any other user viewing the affected page.

Affected Systems

Semantic MediaWiki extensions for MediaWiki are affected. The issue exists in all releases earlier than 7.2.0; the fix is included in Semantic MediaWiki 7.2.0 and later. The product is freely available under an open‑source license and can be used in any MediaWiki deployment that includes the Semantic MediaWiki extension.

Risk and Exploitability

The CVSS score of 6.1 reflects a moderate severity, indicating that the flaw can lead to a compromise of user data and potential defacement. EPSS is not available, so the exploitation probability cannot be quantified. The vulnerability is not listed in the CISA KEV catalog. The most likely attack vector is remote, via a web request that includes a crafted "sep" parameter; any user with access to the Special:Ask page and the ability to supply that parameter could exploit the flaw.

Generated by OpenCVE AI on September 19, 2026 at 13:39 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade Semantic MediaWiki to version 7.2.0 or later
  • Audit existing Special:Ask queries for custom sep values and remove or escape them as needed
  • Apply MediaWiki core security hardening and keep the core updated

Generated by OpenCVE AI on September 19, 2026 at 13:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-7xv3-gf2g-498h Semantic MediaWiki affected by Special:Ask table `sep` parameter reflected XSS
History

Mon, 21 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
First Time appeared Semantic-mediawiki
Semantic-mediawiki semantic Mediawiki
Vendors & Products Semantic-mediawiki
Semantic-mediawiki semantic Mediawiki

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description Semantic MediaWiki is a free, open-source extension to MediaWiki that lets users store and query data within the wiki's pages. Prior to version 7.2.0, `sep` was inserted verbatim into HTML cell joins. This made it possible to inject HTML through the separator value. Version 7.2.0 fixes the issue.
Title Semantic MediaWiki affected by Special:Ask table `sep` parameter reflected XSS
Weaknesses CWE-79
References
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Semantic-mediawiki Semantic Mediawiki
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-18T19:55:00.589Z

Reserved: 2026-08-20T20:48:20.507Z

Link: CVE-2026-77607

cve-icon Vulnrichment

Updated: 2026-09-18T19:54:57.407Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-18T17:17:00.980

Modified: 2026-09-23T18:12:04.247

Link: CVE-2026-77607

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T19:15:17Z

Weaknesses
  • CWE-79

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')