CVE-2025-6596 | Wikimedia Vector up to 1.42.6/1.43.1/1.43.x portlets.Js cross site scripting
A vulnerability marked as problematic has been reported in Wikimedia Vector up to 1.42.6/1.43.1/1.43.x. Affected by this vulnerability is an unknown functionality of the file resources/skins.Vector.Js/portlets.Js. Performing a manipulation results in cross site scripting.
This vulnerability was named CVE-2025-6596. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.