CVE-2024-47849: Mediawiki Cargo
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows SQL Injection.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.
Affected products
- Mediawiki Cargo: version 3.6.0 only
Published 2024-10-05. Last modified 2026-06-17.