
CVE-2026-39837 Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in WikiWorks Mediawiki - Cargo Extension allows Stored XSS.This issue affe… https://www.cve.org/CVERecord?id=CVE-2026-39837
Post summary
The text announces the discovery of CVE-2026-39837, a stored XSS flaw in the WikiWorks MediaWiki Cargo Extension caused by improper neutralization of script tags, without providing PoC, exploit, patch or active exploitation details.
