PatchSiren

Phabricator CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW Phabricator CVE published 2026-05-11

CVE-2026-34095

CVE-2026-34095 is a MediaWiki vulnerability disclosed on 2026-05-11 and updated on 2026-05-14. The supplied advisory maps it to CWE-668 (Exposure of Resource to Wrong Sphere) and references includes/Actions/ActionEntryPoint.php and includes/Request/FauxResponse.php, but it does not provide exploit mechanics or a user-facing attack scenario. The affected ranges are MediaWiki versions before 1.43.7, 1.44.4, [truncated]