CVE-2025-11173 | Wikimedia OATHAuth up to 1.39.13/1.43.3/1.44.0 OATHManage.Php Remote Code Execution (EUVD-2025-206638 / CNNVD-202602-530)
A vulnerability marked as critical has been reported in Wikimedia OATHAuth up to 1.39.13/1.43.3/1.44.0. This issue affects some unknown processing of the file src/Special/OATHManage.Php. Performing a manipulation results in Remote Code Execution.
This vulnerability is cataloged as CVE-2025-11173. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.