CVE-2025-61638 | Wikimedia Parsoid up to 0.16.5/0.20.3/0.21.0 Sanitizer.Php cross site scripting (CNNVD-202602-183)
A vulnerability was found in Wikimedia Parsoid up to 0.16.5/0.20.3/0.21.0. It has been classified as problematic. This issue affects some unknown processing of the file includes/parser/Sanitizer.Php. This manipulation causes cross site scripting.
This vulnerability is handled as CVE-2025-61638. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.