CVE-2025-11175

Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection') vulnerability in The Wikimedia Foundation Mediawiki - DiscussionTools Extension allows Regular Expression Exponential Blowup.This issue affects Mediawiki - DiscussionTools Extension: 1.44, 1.43.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2026-01-30 20:16

Updated : 2026-01-30 20:16


NVD link : CVE-2025-11175

Mitre link : CVE-2025-11175

CVE.ORG link : CVE-2025-11175


JSON object : View

Products Affected

No product.

CWE
CWE-917

Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')