CVE-2013-6453
MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 does not properly sanitize SVG files, which allows remote attackers to have unspecified impact via invalid XML.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0062 (0.6%)
Percentile: 70.2%
EPSS: 2026-05-06
Affects
mediawiki:mediawikiTechnical description
MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 does not properly sanitize SVG files, which allows remote attackers to have unspecified impact via invalid XML.
Published: 5/12/2014, 2:55:06 PM
Last modified: 5/6/2026, 10:30:45 PM