CVE-2024-47849: Mediawiki Cargo

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows SQL Injection.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.

Affected products

Published 2024-10-05. Last modified 2026-06-17.