Skip to content

CVE-2013-6453

MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 does not properly sanitize SVG files, which allows remote attackers to have unspecified impact via invalid XML.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0062 (0.6%)
Percentile: 70.2%
EPSS: 2026-05-06

Affects

mediawiki:mediawiki

Technical description

MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 does not properly sanitize SVG files, which allows remote attackers to have unspecified impact via invalid XML.

Published: 5/12/2014, 2:55:06 PM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam