Mediawiki · Cargo Extension · CVE-2026-14363
**Name of the Vulnerable Software and Affected Versions**
Mediawiki - Cargo Extension versions prior to 1.43.9
Mediawiki - Cargo Extension versions prior to 1.44.6
Mediawiki - Cargo Extension versions prior to 1.45.4
**Description**
Improper neutralization of special elements used in an SQL command leads to a SQL injection, which occurs when an attacker can interfere with the queries that an application makes to its database.
**Recommendations**
Update Mediawiki - Cargo Extension to version 1.43.9 or later.
Update Mediawiki - Cargo Extension to version 1.44.6 or later.
Update Mediawiki - Cargo Extension to version 1.45.4 or later.