Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. From versions 1.9.4 to before 3.4.0, page descriptions are inserted into raw HTML without proper sanitization by the Citizen skin when using the old search bar. Any user with page editing privileges can insert cross-site scripting (XSS) payloads into the DOM for other users who are searching for specific pages. This issue has been patched in version 3.4.0.
History

Thu, 03 Jul 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 03 Jul 2025 19:45:00 +0000

Type Values Removed Values Added
Description Citizen is a MediaWiki skin that makes extensions part of the cohesive experience. From versions 1.9.4 to before 3.4.0, page descriptions are inserted into raw HTML without proper sanitization by the Citizen skin when using the old search bar. Any user with page editing privileges can insert cross-site scripting (XSS) payloads into the DOM for other users who are searching for specific pages. This issue has been patched in version 3.4.0.
Title Citizen is vulnerable to stored XSS attack in the legacy search bar
Weaknesses CWE-79
References
Metrics cvssV3_1

{'score': 8.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2025-07-03T19:34:50.057Z

Updated: 2025-07-03T19:50:44.553Z

Reserved: 2025-06-27T12:57:16.121Z

Link: CVE-2025-53368

cve-icon Vulnrichment

Updated: 2025-07-03T19:50:36.399Z

cve-icon NVD

Status : Received

Published: 2025-07-03T20:15:23.577

Modified: 2025-07-03T20:15:23.577

Link: CVE-2025-53368

cve-icon Redhat

No data.