CVE-2025-61653 - Extension:TextExtracts does not check for authorizeRead when returning extracts

CVE-2025-61653 - Extension:TextExtracts does not check for authorizeRead when returning extracts

CVE ID : CVE-2025-61653 Published : Feb. 3, 2026, 2:16 a.m. | 17 minutes ago Description : Vulnerability in Wikimedia Foundation TextExtracts. This vulnerability is associated with program files includes/ApiQueryExtracts.Php. This issue affects TextExtracts: from * before 1.39.14, 1.43.4, 1.44.1. Severity: 2.7 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
LOW
Published
Feb. 3, 2026
Affected Product: Php